Uptime Hamster: 38d 3h 35mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

10,901Incidentes
4,082Filtrados
1,119Actores
8,890IOCs visibles
Limpiar
Mapa
110
Paises afectados
Alertas
5,893
Amenazas recientes
Brechas
7,163
Filtraciones y victimas
Hackeos
8,853
Incidentes investigables

Actividad filtrada

TTPs principales

T1566813
T10595
T10783
T10033
T14862
T11902
T11102
T15472

Actores

qilin314
thegentlemen210
akira131
dragonforce118
incransom94
lockbit580
play74
nightspire54
sinobi45
clop43

Paises

United States1740
China139
United Kingdom132
Germany112
Canada80
Brazil70
India60
France59
Italy58
Spain51

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States1740 incidentes China139 incidentes United Kingdom132 incidentes Germany112 incidentes Canada80 incidentes Brazil70 incidentes India60 incidentes France59 incidentes Italy58 incidentes Spain51 incidentes Mexico43 incidentes Argentina39 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
4,082 resultados · pagina 16/114Exportar CSV
Daily Dark Web: French Hospital Patient Database Allegedly Repackaged and Shared A threat actor has published what they claim is a reformatted dataset originating from the 2024 Blackout ransomware leak targeting Centre Hospitalier d'Armentières in France. According to the post, the dataset contains information on approximately 203,928 patients, covering records from 2004 through March 2018.2026-06-28
x-ctiransomwareFranceT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Ido Cohen: New Ransomware Group: Settra Settra has entered the ransomware landscape with 10+ published victims already listed on its leak site. Unlike groups that attempt to justify their actions, Settra openly states its motivation is simple: money. The group claims it does not target specific countries or industries—it targets organizations with exploitable security weaknesses.2026-06-27
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
MalwareHunterTeam: RT by @malwrhunterteam: This is some kind of IT security related recruiting ad from the University of Criminal Investigation and Police Studies of Serbia... What are they "analysing"? Looks top or something like that... ‍2026-06-27
malwrhunterteamcampaignSerbia
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
Ransomware Victim: callhorton.com (incransom)2026-06-26
incransomransomwareUnknown
Victima de ransomware reportada en el dashboard de incransom.
NSW Rural Fire Service2026-06-26
novaransomwareAustralia
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.
Ransomware Victim: Mosaic Partners (payload)2026-06-26
anggipradanaransomwareUnknown
Victima de ransomware reportada en el dashboard de payload.
Hokua2026-06-26
ailockransomwareChile
El 26 de junio de 2026, la empresa Hokua, un resort-style residential condominium en Honolulu, Hawaii, fue afectada por un ataque de ransomware atribuido al grupo AiLock. El incidente revela...
vslmarine2026-06-26
novaransomwareIndia
Una alerta reciente indica que la empresa VSL Marine Technology Pvt. Ltd., especializada en servicios de ingeniería y escaneo 3D para el sector marítimo y offshore, fue afectada por un ataqu...
Ido Cohen: Two ransomware groups are showing a sharp increase in activity during 2026. SafePay Q1 2026: 22 victims Q2 2026: 59 victims (+168%) RALord (Nova) Q1 2026: 14 victims Q2 2026: 60 victims (+329%) Both groups have significantly accelerated their operations in recent months, making them two of the fastest-growing ransomware threats to watch. Track ransomware trends and emerging threat groups with DarkFeed.2026-06-26
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Tracking the pulse of ransomware in 2026—these are the groups leading the global attack landscape right now: Qilin – 665 attacks The Gentleman – 453 attacks Akira – 290 attacks DragonForce – 245 attacks INC – 239 attacks Lockbit – 199 attacks Play – 154 attacks CLOP – 127 attacks NightSpire – 115 attacks CoinBase Cartel – 97 attacks Stay ahead of ransomware threats.2026-06-26
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
MalwareHunterTeam: List of names: "CamScanner 19-06-2026 16.49.accdr" "Adv Int Course (Rome).accdr" "Expression of Interest (EOI).accdr" "Security Orientation Course-41.accdr" "001210.accdr" "Proposal for Area Admin Meeting - SLNS Barana.accdr" "UN-System-wide-Strategy-on-SSC-2026-2029.accdr" ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: A possible interesting, low detected sample that was seen from Italy has @ET_Labs "ET MALWARE Win32/Darkme Trojan Checkin M1" traffic match to that IP address. In case correct, that IP can be related to Evilnum APT... ‍ As soon as @smica83 has time, the sample will be uploaded to Bazaar and then anyone can look. cc @marsomx_ @G609309532026-06-26
malwrhunterteammalwareItaly
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
Hackmanac: Cyber Alert ‼ USA - 𝗣𝗼𝗹𝘆𝗺𝗮𝗿𝗸𝗲𝘁 Polymarket confirmed a third-party compromise that enabled attackers to inject malicious code into its website, leading to the theft of user funds. The company contained the incident and will refund affected users. Around the same time, researchers reported a phishing campaign targeting Polymarket users that allegedly stole about US$3 million in cryptocurrency.2026-06-26
H4ckmanacphishingUnited StatesT1566
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Software Arge2026-06-26
ransomwareTurkey
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.
GSP Crop Science Pvt2026-06-25
incransomransomwareIndia
La empresa GSP Crop Science Pvt ha sido objeto de un ataque cibernético relacionado con ransomware, atribuido al grupo malicioso "incransom". Este incidente afecta a una empresa líder en inn...
Nachlass Nord2026-06-25
anubisransomwareGermany
Nachlass Nord, una organización dedicada a la gestión de patrimonios y registros familiares, fue objeto de un ataque cibernético atribuido al grupo anubis. El incidente ocurrió el 2026-06-25...
Clearview Eye Centre2026-06-25
interlockransomwareCanada
Un incidente de ciberseguridad ha afectado a Clearview Eye Centre, una clínica oftalmológica en Calgary, Alberta. Según informaciones recientes, el grupo malicioso "interlock" ha comprometid...
sansilvestre.edu.pe2026-06-25
krybitransomwarePeru
Una alerta de ransomware ha sido reportada contra la institución educativa sansilvestre.edu.pe, una prestigiosa escuela privada para chicas en Perú. El ataque fue atribuido al grupo cibernét...
Delegal Poindexter & Underkofler, P.A.2026-06-25
morpheusransomwareUnited States
Se ha reportado un incidente de ciberataque relacionado con ransomware afectando a Delegal Poindexter & Underkofler, P.A., una organización especializada en servicios legales. El grupo Morph...
StealthMole: 𝗗𝗮𝘆 𝟮 𝗶𝘀 𝗶𝗻 𝗳𝘂𝗹𝗹 𝘀𝘄𝗶𝗻𝗴 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲! The best part of an event isn't the presentations. It's the conversations happening in between. Day 2 has been full of great discussions, new connections, and live demos at the StealthMole booth. Thank you to everyone who's stopped by so far! If you're at the expo today, come visit us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯. There's still plenty of time to connect, exchange ideas, and see StealthMole in action.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: One thing we've learned from 𝗗𝗮𝘆 𝟭 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲 The best part of any event isn't the booth. It's the people you meet. Today was filled with conversations, new perspectives, and plenty of great moments with visitors, partners, and friends from across the industry. Thank you to everyone who spent time with us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Ido Cohen: Stormous is back with increased activity. Recent victims have had their public websites defaced with a ransomware message displayed directly on the homepage—a pressure tactic sometimes used by ransomware groups to increase urgency and force negotiations. DarkFeed makes it easy to compare a ransomware group's leak site with the victim's public website in one place, helping analysts quickly identify attacks like these.2026-06-25
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Country Spotlight: Canada Over the past 7 days, our AI-powered platform tracked ransomware and cyber extortion attacks targeting Canada.2026-06-25
ido_cohen2ransomwareCanadaT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Sector Spotlight: HealthCare Over the past 7 days, our AI-powered platform tracked ransomware and cyber extortion groups actively targeting the HealthCare sector.2026-06-25
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Group-IB Threat Intelligence: Group-IB telemetry has identified over 62,000 compromised endpoints across more than 160 countries infected with #MilleniumRAT (4.x). The infection velocity is alarming, with over 39,000 of these detections occurring in Q1 2026 alone, representing 64% of all infections. This demonstrates a rapidly accelerating global campaign.2026-06-25
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Fonsan2026-06-25
booba-projectransomwareSpain
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.
Quest Health Solutions2026-06-24
anubisransomwareUnited States
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.
impulso-store.com2026-06-24
stormousransomwareMexico
Un incidente de ciberseguridad ha afectado a la empresa impulso-store.com, relacionada con el grupo cybercriminal stormous. Según informaciones verificadas por OSINT, se han expuesto datos s...
lpgroup2026-06-24
novaransomwareUnknown
Una alerta de ransomware ha afectado a la empresa LP Group, una organización con un perfil de datos complejo y proyectos de gran envergadura en sectores comerciales, logísticos y de servicio...
transvill2026-06-24
novaransomwareUnited States
Una alerta de ransomware ha sido reportada contra Transvill SRL, una empresa especializada en transporte y logística de carga. El grupo atacante identificado es "nova", y la violación ocurri...
Miami Machine2026-06-24
akiraransomwareUnited States
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.
alejandria.biz2026-06-24
novaransomwareArgentina
Se ha reportado un incidente de ransomware relacionado con la organización alejandria.biz, afectada por un ataque atribuido al grupo cybercriminal "nova". La alerta se registró el 24 de juni...
StealthMole: RT by @stealthmole_int: Following the Money: Mapping KidBin's Cryptocurrency Infrastructure Across Darkweb Note: When visiting this blog, you may see a "Sensitive Content" warning from Blogger. This warning is automatically generated by Google's systems based on the topics discussed on the site and does not necessarily indicate the presence of graphic or inappropriate material.2026-06-24
stealthmole_intcampaignUnknown
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Ido Cohen: We continue to monitor additional sources in the darknet. Here are some of the events that were added to our platform in the last week. 1 A major breach exposed over 500GB of sensitive personal information from job seekers, posing a high risk of identity theft and fraud. 2 Remote access to POS systems is being sold, threatening financial data and sensitive customer information across large retail businesses globally.2026-06-24
ido_cohen2breachUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Frosty Acres Brands2026-06-24
booba-projectransomwareUnited States
Una alerta de ransomware fue publicada el día 24 de junio de 2026 relacionada con la empresa Frosty Acres Brands. El ataque fue atribuido al grupo cibernético Booba Project, quien logró roba...
Al Dhow Group2026-06-24
thegentlemenransomwareUnited Arab Emirates
Resumen no disponible. Abre la ficha para ver los detalles normalizados del incidente.