Uptime Hamster: 11d 11h 33mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

11,126Incidentes
235Filtrados
1,127Actores
31IOCs visibles
Limpiar
Mapa
7
Paises afectados
Alertas
6,108
Amenazas recientes
Brechas
7,383
Filtraciones y victimas
Hackeos
9,074
Incidentes investigables

Actividad filtrada

TTPs principales

T1566166

Actores

malwrhunterteam10
DailyDarkWeb6
GroupIB_TI6
DarkWebInformer4
stealthmole_int4
H4ckmanac2

Paises

United States136
Mexico2
France1
Serbia1
Global1
India1
United Kingdom1

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States136 incidentes Mexico2 incidentes France1 incidentes Serbia1 incidentes Global1 incidentes India1 incidentes United Kingdom1 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
235 resultados · pagina 1/7Exportar CSV
Dark Web Informer: Ancient civilization used to call this cable management.2026-06-29
DarkWebInformercampaignUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Ugh, you may want to fix your auto posts mate.2026-06-28
DarkWebInformercampaignUnited States
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Priorities: save the codebase, then yourself.2026-06-28
DarkWebInformercampaignUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Government of Colima e-signature system compromise claim posted on a forum ACTIVA appears to be tied to the advanced electronic signature system used by the Government of the State of Colima, Mexico. A forum user claims they gained administrator access to the ACTIVA Firma portal and allegedly deleted users from the system, leaving only an administrator account under their control.2026-06-28
DarkWebInformercampaignMexico
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Daily Dark Web: Major International Anti-Piracy Operation Seizes Pirate Streaming Infrastructure Law enforcement agencies from multiple countries have seized domains and infrastructure associated with large-scale piracy services as part of **Operation Offside**. * The seizure banner identifies participation from agencies including: * U.S.2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Is this accurate?2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: What do you think?2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Don't believe everything you see lurking in the viral corners of the web. #DailyDarkWeb #ViralHoax #CGI #Debunked #Physics2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Alleged Compromise of Colima State Government Electronic Signature System A threat actor claims to have compromised the Advanced Electronic Signature (Firma Electrónica Avanzada) platform used by the Government of the State of Colima, Mexico. * According to the forum post, the actor alleges they: * Gained administrative access to the portal. * Deleted all user accounts except a single administrator account. * Retained control of the remaining administrative account.2026-06-28
DailyDarkWebcampaignMexico
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: French Municipal Police Data Allegedly Leaked A threat actor claims to have leaked approximately 4,900 "mains courantes" (police incident reports/logs) belonging to the Municipal Police of Joinville-le-Pont, France. * According to the listing, the actor states the dataset was personally extracted and is offering access through a paid forum.2026-06-28
DailyDarkWebcampaignFrance
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
MalwareHunterTeam: RT by @malwrhunterteam: This is some kind of IT security related recruiting ad from the University of Criminal Investigation and Police Studies of Serbia... What are they "analysing"? Looks top or something like that... ‍2026-06-27
malwrhunterteamcampaignSerbia
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: Image2026-06-27
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And @smica83 uploaded the sample to Bazaar:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: List of names: "CamScanner 19-06-2026 16.49.accdr" "Adv Int Course (Rome).accdr" "Expression of Interest (EOI).accdr" "Security Orientation Course-41.accdr" "001210.accdr" "Proposal for Area Admin Meeting - SLNS Barana.accdr" "UN-System-wide-Strategy-on-SSC-2026-2029.accdr" ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: 51.79.138[.]177 ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And @smica83 uploaded a realted sample to Bazaar:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: Both domains are on 202.1.31[.]73... ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And the mentioned sample is now on Bazaar thanks to @smica83:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: 67.43.50[.]11 ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
Hackmanac: @heiseonline @golem @etguenni2026-06-26
H4ckmanaccampaignUnknown
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
StealthMole: 𝗗𝗮𝘆 𝟮 𝗶𝘀 𝗶𝗻 𝗳𝘂𝗹𝗹 𝘀𝘄𝗶𝗻𝗴 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲! The best part of an event isn't the presentations. It's the conversations happening in between. Day 2 has been full of great discussions, new connections, and live demos at the StealthMole booth. Thank you to everyone who's stopped by so far! If you're at the expo today, come visit us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯. There's still plenty of time to connect, exchange ideas, and see StealthMole in action.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: One thing we've learned from 𝗗𝗮𝘆 𝟭 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲 The best part of any event isn't the booth. It's the people you meet. Today was filled with conversations, new perspectives, and plenty of great moments with visitors, partners, and friends from across the industry. Thank you to everyone who spent time with us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Group-IB Threat Intelligence: The Y2K Operators threat actor is using sophisticated #socialengineering lures, disguising payloads as legitimate software, cracked applications, gaming cheat tools (e.g., Roblox), and used PDF decoy documents.2026-06-25
GroupIB_TIcampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: Group-IB telemetry has identified over 62,000 compromised endpoints across more than 160 countries infected with #MilleniumRAT (4.x). The infection velocity is alarming, with over 39,000 of these detections occurring in Q1 2026 alone, representing 64% of all infections. This demonstrates a rapidly accelerating global campaign.2026-06-25
GroupIB_TIcampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
StealthMole: RT by @stealthmole_int: Following the Money: Mapping KidBin's Cryptocurrency Infrastructure Across Darkweb Note: When visiting this blog, you may see a "Sensitive Content" warning from Blogger. This warning is automatically generated by Google's systems based on the topics discussed on the site and does not necessarily indicate the presence of graphic or inappropriate material.2026-06-24
stealthmole_intcampaignUnknown
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Hackmanac: #HackTuesday Hack Tuesday: Week 17 - 23 Jun 2026 374 cyber attacks across 62 countries The most active threat actor last week was NoName057(16) claiming responsibility for 38 cyber attacks. The USA is the most affected country, accounting for 21.4% of incidents, with 80 cyber attacks. The Gov / Mil / LE sector is the most targeted, accounting for 19.5% of incidents with 73 cyber attacks. The estimated Critical cyber attacks account to 54 (14.4% of the total).2026-06-23
H4ckmanaccampaignUnited States
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
FortiBleed: exposición masiva de credenciales Fortinet y guía CTI de respuesta2026-06-19
campaignGlobal
FortiBleed es una campaña/filtración de credenciales contra dispositivos Fortinet FortiGate y pasarelas SSL-VPN expuestas a Internet. La evidencia pública no demuestra un zero-day de Fortine...
FortiBleed2026-06-19
campaignUnited StatesT1566
FortiBleed es una campaña global que ha sido identificada como un ataque cibernético dirigido a sistemas de seguridad Fortinet, incluyendo dispositivos FortiGate y servicios SSL-VPN. La camp...
StealthMole: NEET Exam Leak: We Saw It Coming StealthMole AI Agent detected a 430% surge in NEET-related dark web activity before the leak went public.2026-06-18
stealthmole_intcampaignIndia
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Group-IB Threat Intelligence: One of SilabRAT's most notable capabilities is its use of Hidden Virtual Network Computing (HVNC). By interacting with services directly from the victim's device, attackers can perform account activity, access sensitive platforms, and conduct fraudulent operations while appearing as a legitimate user originating from the trusted device and IP address. #InfoSec2026-06-10
GroupIB_TIcampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: As browser security evolves, attackers are moving beyond traditional cookie theft. #SilabRAT advertises browser profile cloning, allowing operators to replicate a victim's browser environment, including extensions, storage, and fingerprinting artifacts. This enables access to authenticated sessions that may otherwise resist conventional session hijacking techniques. #CyberThreats #ThreatIntelligence2026-06-10
GroupIB_TIcampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Debug Test Campaign 22026-05-26
campaignUnknown
La campaña "Debug Test Campaign 2" es una operación de prueba realizada dentro del ámbito de seguridad informática. Se describe como un "Test campaign no objects", lo que sugiere que su prop...
Cephalus Ransomware Campaign2026-05-26
campaignUnited States
Cephalus es un grupo de ciberataques atribuido a una campaña de ransomware activa en mayo de 2026. Este ataque se centra en la extorsión de organizaciones mediante el cifrado de datos crític...
Raworld Ransomware Campaign2026-05-26
campaignUnknownT1566
La campania Raworld representa un caso de estudio crucial en el ámbito de la ciberseguridad, destacando las amenazas que enfrentan las organizaciones en 2026. Este análisis detalla los aspec...
Rancoz Ransomware Campaign2026-05-26
campaignUnknownT1566
Rancoz es un ransomware que ha sido identificado en una campaña de ataque cibernético con fines maliciosos. La actividad se registró el 2026-05-26, destacando su impacto en sistemas y organi...