Uptime Hamster: 10d 14h 6mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

11,126Incidentes
35Filtrados
1,127Actores
30IOCs visibles
Limpiar
Mapa
9
Paises afectados
Alertas
6,108
Amenazas recientes
Brechas
7,383
Filtraciones y victimas
Hackeos
9,074
Incidentes investigables

Actividad filtrada

TTPs principales

T15664

Actores

DailyDarkWeb11
stealthmole_int8
aurora1
bravox1
cry01
fletchen1
kraken1
kyber1
pandora1
playboy1

Paises

United States7
Russia2
Malaysia2
Mexico2
France2
Croatia1
India1
Iceland1
Libya1

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States7 incidentes Russia2 incidentes Malaysia2 incidentes Mexico2 incidentes France2 incidentes Croatia1 incidentes India1 incidentes Iceland1 incidentes Libya1 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
35 resultados · pagina 1/1Exportar CSV
Ransomware Group: aurora2026-06-29
aurorathreat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: bravox2026-06-29
bravoxthreat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: cry02026-06-29
cry0threat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: fletchen2026-06-29
fletchenthreat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: kraken2026-06-29
krakenthreat-actorRussia
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: kyber2026-06-29
kyberthreat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: pandora2026-06-29
pandorathreat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: playboy2026-06-29
playboythreat-actorUnknown
Perfil del grupo segun ransomware.anggipradana.com.
Ransomware Group: underground2026-06-29
undergroundthreat-actorRussia
Perfil del grupo segun ransomware.anggipradana.com.
StealthMole: RT by @stealthmole_int: We traced the threat actor behind the defacement of Malaysia's Ministry of Health (MOH) website. Our investigation found that the actor has been active on Telegram since 2024, participating in multiple channels related to hacking forums, web shells, spam, hacking tools, and data leaks.2026-06-29
stealthmole_intbreachMalaysia
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: We traced the threat actor behind the defacement of Malaysia's Ministry of Health (MOH) website. Our investigation found that the actor has been active on Telegram since 2024, participating in multiple channels related to hacking forums, web shells, spam, hacking tools, and data leaks.2026-06-29
stealthmole_intbreachMalaysia
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Daily Dark Web: Major International Anti-Piracy Operation Seizes Pirate Streaming Infrastructure Law enforcement agencies from multiple countries have seized domains and infrastructure associated with large-scale piracy services as part of **Operation Offside**. * The seizure banner identifies participation from agencies including: * U.S.2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Is this accurate?2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Pinned: New Linux "pedit COW" Privilege Escalation Exploit Published Security researcher Massimiliano Oldani has released a public proof-of-concept (PoC) exploit, **packet_edit_meme**, for the Linux kernel vulnerability **CVE-2026-46331**, nicknamed **pedit COW**. * The flaw resides in Linux's **net/sched act_pedit** traffic control subsystem and allows an unprivileged local user to escalate privileges to **root** by corrupting shared page-cache memory.2026-06-28
DailyDarkWebvulnerabilityUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: What do you think?2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Don't believe everything you see lurking in the viral corners of the web. #DailyDarkWeb #ViralHoax #CGI #Debunked #Physics2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Clearcover Customer Data Allegedly Offered for Sale A threat actor claims to be selling a database allegedly belonging to U.S. auto insurer Clearcover. * According to the forum post, the dataset is dated **25 June 2026** and allegedly contains **448,603** records.2026-06-28
DailyDarkWebbreachUnknownT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Alleged Compromise of Colima State Government Electronic Signature System A threat actor claims to have compromised the Advanced Electronic Signature (Firma Electrónica Avanzada) platform used by the Government of the State of Colima, Mexico. * According to the forum post, the actor alleges they: * Gained administrative access to the portal. * Deleted all user accounts except a single administrator account. * Retained control of the remaining administrative account.2026-06-28
DailyDarkWebcampaignMexico
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: French Municipal Police Data Allegedly Leaked A threat actor claims to have leaked approximately 4,900 "mains courantes" (police incident reports/logs) belonging to the Municipal Police of Joinville-le-Pont, France. * According to the listing, the actor states the dataset was personally extracted and is offering access through a paid forum.2026-06-28
DailyDarkWebcampaignFrance
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Call of Duty: Mobile Internal Offsets Allegedly Released A forum user has shared what they claim is an internal `offsets dump.cs` file for the global version of Call of Duty: Mobile (package: `com.activision.callofduty.shooter`). The post includes a public download link and states the file will be reposted if the original link becomes unavailable.2026-06-28
DailyDarkWebbreachUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Croatian Student Database Allegedly Shared on Dark Web Forum A threat actor has published what they claim is a database containing approximately 954,000 records related to students from Croatian primary and secondary schools.2026-06-28
DailyDarkWebbreachCroatiaT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: French Hospital Patient Database Allegedly Repackaged and Shared A threat actor has published what they claim is a reformatted dataset originating from the 2024 Blackout ransomware leak targeting Centre Hospitalier d'Armentières in France. According to the post, the dataset contains information on approximately 203,928 patients, covering records from 2004 through March 2018.2026-06-28
DailyDarkWebransomwareFranceT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
StealthMole: 𝗗𝗮𝘆 𝟮 𝗶𝘀 𝗶𝗻 𝗳𝘂𝗹𝗹 𝘀𝘄𝗶𝗻𝗴 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲! The best part of an event isn't the presentations. It's the conversations happening in between. Day 2 has been full of great discussions, new connections, and live demos at the StealthMole booth. Thank you to everyone who's stopped by so far! If you're at the expo today, come visit us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯. There's still plenty of time to connect, exchange ideas, and see StealthMole in action.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: One thing we've learned from 𝗗𝗮𝘆 𝟭 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲 The best part of any event isn't the booth. It's the people you meet. Today was filled with conversations, new perspectives, and plenty of great moments with visitors, partners, and friends from across the industry. Thank you to everyone who spent time with us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: RT by @stealthmole_int: Following the Money: Mapping KidBin's Cryptocurrency Infrastructure Across Darkweb Note: When visiting this blog, you may see a "Sensitive Content" warning from Blogger. This warning is automatically generated by Google's systems based on the topics discussed on the site and does not necessarily indicate the presence of graphic or inappropriate material.2026-06-24
stealthmole_intcampaignUnknown
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
msupdater indicators and references2026-06-18
msupdateriocUnknown
APTTrail mantiene indicadores publicos asociados a msupdater. Aliases observados: msupdater. Conteo por tipo: domain: 5, file_path: 4, url: 1.
StealthMole: NEET Exam Leak: We Saw It Coming StealthMole AI Agent detected a 430% surge in NEET-related dark web activity before the leak went public.2026-06-18
stealthmole_intcampaignIndia
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: RT by @stealthmole_int: Government-Related Darkweb/Deepweb Leak Activity — First Week of June 2026 Observed activity consists of 26 government-related leak or sale postings and 4 ransomware/extortion listings tied to public-sector or government-associated entities. The activity is distributed across multiple underground forums and Tor-hosted leak sites, with visible concentration on darkforums, spear, and craxpro.2026-06-10
stealthmole_intransomwareMexico
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: Security OSINT Highlights — First Week of June 2026 Reporting collected during the first week of June 2026 is dominated by vulnerability disclosures and exploitation-related alerts, with a secondary concentration in malware, espionage, and intrusion activity supported by file-hash and IP indicators.2026-06-10
stealthmole_intmalwareUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Underground Ransomware Campaign2026-05-26
campaignUnited StatesT1566
Resumen de la Campana: La campaña "Underground Ransomware Campaign" representa una operación cibernética de alto nivel llevada a cabo por actores ocultos en el ámbito del ciberdelito. Este t...
pandora2026-05-25
threat-actorUnited States
Pandora es un actor de amenaza asociado al ransomware Pandora, que fue obtenido por vx-underground el 14 de marzo de 2022. Se conocen cinco victimas.
underground2026-05-25
threat-actorUnknown
underground es un actor de amenaza asociado al grupo RomCom (Storm-0978), con sede en Rusia. Este actor ha estado activo desde julio de 2023, utilizando técnicas de ransomware para extorsion...
Forum: XSS.is2026-05-25
iocIceland
XSS.is es un dominio asociado a una plataforma de foro subterránea y clara-net utilizada por actores amenazantes. Este indicador de compromiso (IOC) fue identificado en el contexto de operac...
Forum: Sinister.ly2026-05-25
iocLibya
Sinister.ly es un dominio asociado a un foro subterráneo o clearnet utilizado por actores maliciosos para actividades de ciberataque. Este indicador de compromiso (IOC) ha sido identificado ...
Forum: Wilders Security2026-05-25
iocUnknown
Wilderssecurity.com es un dominio asociado a una plataforma de discusión subterránea o en claro que ha sido utilizada por actores amenazantes para coordinar operaciones cibernéticas. Este in...