Uptime Hamster: 59d 21h 55mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

10,901Incidentes
2,571Filtrados
1,119Actores
20,404IOCs visibles
Limpiar
Mapa
76
Paises afectados
Alertas
5,893
Amenazas recientes
Brechas
7,163
Filtraciones y victimas
Hackeos
8,853
Incidentes investigables

Actividad filtrada

TTPs principales

T1566293
T15622
T10782
T10551
T10211
T14861
T15671
T10411

Actores

anggipradana166
bushidouk55
x-cti47
deadlock40
the-gentlemen23
thegentlemen22
russia18
ido_cohen216
dragonforce12
inc-ransom12

Paises

United States956
United Kingdom123
Russia45
China43
Brazil38
France35
Germany32
Canada27
India23
Italy22

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States956 incidentes United Kingdom123 incidentes Russia45 incidentes China43 incidentes Brazil38 incidentes France35 incidentes Germany32 incidentes Canada27 incidentes India23 incidentes Italy22 incidentes Australia22 incidentes Iran20 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
2,571 resultados · pagina 17/72Exportar CSV
MalwareHunterTeam: List of names: "CamScanner 19-06-2026 16.49.accdr" "Adv Int Course (Rome).accdr" "Expression of Interest (EOI).accdr" "Security Orientation Course-41.accdr" "001210.accdr" "Proposal for Area Admin Meeting - SLNS Barana.accdr" "UN-System-wide-Strategy-on-SSC-2026-2029.accdr" ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: 51.79.138[.]177 ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And @smica83 uploaded a realted sample to Bazaar:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: Both domains are on 202.1.31[.]73... ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And the mentioned sample is now on Bazaar thanks to @smica83:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: A possible interesting, low detected sample that was seen from Italy has @ET_Labs "ET MALWARE Win32/Darkme Trojan Checkin M1" traffic match to that IP address. In case correct, that IP can be related to Evilnum APT... ‍ As soon as @smica83 has time, the sample will be uploaded to Bazaar and then anyone can look. cc @marsomx_ @G609309532026-06-26
malwrhunterteammalwareItaly
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: 67.43.50[.]11 ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
Hackmanac: Cyber Alert ‼ USA - 𝗣𝗼𝗹𝘆𝗺𝗮𝗿𝗸𝗲𝘁 Polymarket confirmed a third-party compromise that enabled attackers to inject malicious code into its website, leading to the theft of user funds. The company contained the incident and will refund affected users. Around the same time, researchers reported a phishing campaign targeting Polymarket users that allegedly stole about US$3 million in cryptocurrency.2026-06-26
H4ckmanacphishingUnited StatesT1566
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Hackmanac: @heiseonline @golem @etguenni2026-06-26
H4ckmanaccampaignUnknown
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Ransomware News: Через російську кібератаку застосунок Укрпошти працює зі збоями2026-06-25
anggipradanareportUnknown
Через російську кібератаку застосунок Укрпошти працює зі збоями Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware News: Noticis kiberuzbrukums Latvijas Valsts mežiem; drošības apsvērumu dēļ slēgts LVM GEO, karšu sistēma un "Mednis" [papildināts]2026-06-25
anggipradanareportUnited Kingdom
Noticis kiberuzbrukums Latvijas Valsts mežiem; drošības apsvērumu dēļ slēgts LVM GEO, karšu sistēma un "Mednis" [papildināts] Noticia sobre ransomware publicada en . Extracto Sin e...
StealthMole: 𝗗𝗮𝘆 𝟮 𝗶𝘀 𝗶𝗻 𝗳𝘂𝗹𝗹 𝘀𝘄𝗶𝗻𝗴 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲! The best part of an event isn't the presentations. It's the conversations happening in between. Day 2 has been full of great discussions, new connections, and live demos at the StealthMole booth. Thank you to everyone who's stopped by so far! If you're at the expo today, come visit us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯. There's still plenty of time to connect, exchange ideas, and see StealthMole in action.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
StealthMole: One thing we've learned from 𝗗𝗮𝘆 𝟭 𝗮𝘁 𝗜𝗻𝘁𝗲𝗿𝗻𝗮𝘁𝗶𝗼𝗻𝗮𝗹 𝗣𝗼𝗹𝗶𝗰𝗲 𝗘𝘅𝗽𝗼 𝟮𝟬𝟮𝟲 The best part of any event isn't the booth. It's the people you meet. Today was filled with conversations, new perspectives, and plenty of great moments with visitors, partners, and friends from across the industry. Thank you to everyone who spent time with us at 𝗕𝗼𝗼𝘁𝗵 𝗔𝟮𝟯.2026-06-25
stealthmole_intcampaignUnited States
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Ido Cohen: Stormous is back with increased activity. Recent victims have had their public websites defaced with a ransomware message displayed directly on the homepage—a pressure tactic sometimes used by ransomware groups to increase urgency and force negotiations. DarkFeed makes it easy to compare a ransomware group's leak site with the victim's public website in one place, helping analysts quickly identify attacks like these.2026-06-25
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Country Spotlight: Canada Over the past 7 days, our AI-powered platform tracked ransomware and cyber extortion attacks targeting Canada.2026-06-25
ido_cohen2ransomwareCanadaT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Sector Spotlight: HealthCare Over the past 7 days, our AI-powered platform tracked ransomware and cyber extortion groups actively targeting the HealthCare sector.2026-06-25
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Group-IB Threat Intelligence: The Y2K Operators threat actor is using sophisticated #socialengineering lures, disguising payloads as legitimate software, cracked applications, gaming cheat tools (e.g., Roblox), and used PDF decoy documents.2026-06-25
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: Group-IB telemetry has identified over 62,000 compromised endpoints across more than 160 countries infected with #MilleniumRAT (4.x). The infection velocity is alarming, with over 39,000 of these detections occurring in Q1 2026 alone, representing 64% of all infections. This demonstrates a rapidly accelerating global campaign.2026-06-25
x-cticampaignUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Group-IB Threat Intelligence: Pinned: #MilleniumRAT (v4.x) marks a significant evolution in the threat landscape. The #malware has been completely rewritten from .NET to a native C++ application, removing .NET dependencies. This architectural shift enables greater stealth and resilience, making detection more challenging. The #Telegram Bot API remains the core C2 mechanism.2026-06-25
x-ctimalwareUnknown
Group-IB Threat Intelligence feed featuring APT research, ransomware analysis and cybercrime investigations.
Ransomware News: «Ðобилизовали веÑÑ ÐºÐ¾Ð»Ð»ÐµÐºÑив»: «УÑагоÑмолзавод» пеÑевели в «ÑÑÑной Ñежим» из-за кибеÑаÑаки2026-06-24
anggipradanareportUnknown
«Ðобилизовали веÑÑ ÐºÐ¾Ð»Ð»ÐµÐºÑив»: «УÑагоÑмолзавод» пеÑевели в «ÑÑÑной Ñежим» из-за кибеÑаÑаки Noticia sobre ransomware publicad...
Ransomware News: Route Mobile: கொலம்பியாவில் சைபர் தாக்குதல்! பெற்றோர் நிறுவனத்துக்கு பாதிப்பில்லையா?2026-06-24
anggipradanareportUnknown
Route Mobile: கொலம்பியாவில் சைபர் தாக்குதல்! பெற்றோர் நிறுவனத்துக்கு பாதிப்பில்லையா? Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware D...
Ransomware News: Plitvice Lakes System Falls Victim to Cyber Attack - Total Croatia2026-06-24
anggipradanareportCroatia
Plitvice Lakes System Falls Victim to Cyber Attack - Total Croatia Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
StealthMole: RT by @stealthmole_int: Following the Money: Mapping KidBin's Cryptocurrency Infrastructure Across Darkweb Note: When visiting this blog, you may see a "Sensitive Content" warning from Blogger. This warning is automatically generated by Google's systems based on the topics discussed on the site and does not necessarily indicate the presence of graphic or inappropriate material.2026-06-24
stealthmole_intcampaignUnknown
StealthMole cyber threat intelligence on ransomware, data leaks and criminal underground ecosystems.
Ido Cohen: We continue to monitor additional sources in the darknet. Here are some of the events that were added to our platform in the last week. 1 A major breach exposed over 500GB of sensitive personal information from job seekers, posing a high risk of identity theft and fraud. 2 Remote access to POS systems is being sold, threatening financial data and sensitive customer information across large retail businesses globally.2026-06-24
ido_cohen2breachUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Hackmanac: RT by @H4ckmanac: Cyber Alert ‼ Japan - 𝗞𝗗𝗗𝗜 KDDI warned users to change their passwords after disclosing unauthorised access to its email system used by six internet service providers (ISPs), potentially exposing up to 14.22 million email accounts. The compromised information may include email addresses and passwords.2026-06-24
H4ckmanacbreachJapan
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Ransomware News: Uwaga. Atak cybernetyczny w Urzędzie Miejskim w Nowej Rudzie2026-06-23
anggipradanareportUnknown
Uwaga. Atak cybernetyczny w Urzędzie Miejskim w Nowej Rudzie Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware News: Bajaj Auto hit by ransomware attack on 23 June 2026 - Business Upturn2026-06-23
anggipradanareportUnknown
Bajaj Auto hit by ransomware attack on 23 June 2026 - Business Upturn Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard
Ransomware Victim: H* (Icarus)2026-06-23
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ransomware Victim: G* (Icarus)2026-06-23
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ransomware Victim: C* (Icarus)2026-06-23
icarusransomwareUnknown
Victima de ransomware reportada en el dashboard de Icarus.
Ido Cohen: The Icarus supply chain extortion campaign continues to unfold. The group has now added 5 additional victims, all with their identities partially concealed. The guessing game has officially begun. How many organizations were impacted through this supply chain incident? And are we witnessing the emergence of a serious competitor to CLOP in the supply chain extortion arena? We'll know more soon.2026-06-23
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: APT73 continues to expand its operations. The group has added 3 new victims to its leak site, including a government entity in South America and a major international airport operator in Central Europe serving tens of millions of passengers annually. APT73 was added to the DarkFeed platform in mid-2024 and has since claimed 110+ victims.2026-06-23
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Meet Wallstreet — not the financial market, but the latest ransomware group added to our monitoring platform. The group's leak site currently lists a single victim: a manufacturing company from India. With 1,000+ ransomware and cyber extortion victims already tracked since the beginning of the year, keeping up with the threat landscape is becoming increasingly challenging.2026-06-23
ido_cohen2ransomwareIndiaT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Hackmanac: #HackTuesday Hack Tuesday: Week 17 - 23 Jun 2026 374 cyber attacks across 62 countries The most active threat actor last week was NoName057(16) claiming responsibility for 38 cyber attacks. The USA is the most affected country, accounting for 21.4% of incidents, with 80 cyber attacks. The Gov / Mil / LE sector is the most targeted, accounting for 19.5% of incidents with 73 cyber attacks. The estimated Critical cyber attacks account to 54 (14.4% of the total).2026-06-23
H4ckmanaccampaignUnited States
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
Ransomware News: フェースグループでシステム障害、ランサムウェア 被害の恐れ-個人情報・取引情報への影響を調査中|セキュリティニュースのセキュリティ対策Lab2026-06-22
anggipradanareportUnknown
フェースグループでシステム障害、ランサムウェア 被害の恐れ-個人情報・取引情報への影響を調査中|セキュリティニュースのセキュリティ対策Lab Noticia sobre ransomware publicada en . Extracto Sin extracto. Referencias Articulo original Ransomware Dashboard