Uptime Hamster: 36d 11h 47mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza PrinzEugen

PrinzEugen

2 incidentes 1 paises 0 sectores threat-actor Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
PrinzEugen is a financially motivated ransomware group that first emerged in February 2026. The group's primary objective is financial gain, achieved through a dual approach of encrypting victim data and exfiltrating sensitive information. PrinzEugen distinguishes itself by publicly threatening to release stolen data on leak sites if ransom demands are not met by their targets, employing a clear and direct extortion strategy.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: PrinzEugen
DLS / onionunknownprinzfkbjiazbrur4mjje6mntjc4vydx3iatkkzycufoylqcoo4y7pqd.onionRansomware Victim: Driving School Software (PrinzEugen)
DLS / onionissueprinzkpn6d3itrgcytmsmlcpt5mgwn3ihpck2hsed5cezlbtbi3wklid.onionCTI.FYI
DLS / leak siteunknownnitter.netIdo Cohen: Threat Group Update Prinz Eugen has launched a newly redesigned leak site and updated its public profile. According to the group's latest statement, it describes itself as a for-profit organization that "specializes in hacking" while claiming it currently does not operate a Ransomware-as-a-Service (RaaS) program. The group also stated that membership intake is currently closed and limited to existing core members.
X/Twitterunknownx.comIdo Cohen: Threat Group Update Prinz Eugen has launched a newly redesigned leak site and updated its public profile. According to the group's latest statement, it describes itself as a for-profit organization that "specializes in hacking" while claiming it currently does not operate a Ransomware-as-a-Service (RaaS) program. The group also stated that membership intake is currently closed and limited to existing core members.
DLS / onionoffline6cudc5cqa2bjpwdhcwm2lj6dbqejjjqzeo6ipwvmbazr6cgu7vfk3dad.onionCTI.FYI
DLS / onionofflineprinzfkbjiazbrur4mjje6mntjc4vydx3iatkkzycufoylqcoo4y7pqd.onionCTI.FYI
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (OSINT)

FranceUnited KingdomUnited StatesSouth Africa

Sectores objetivo (OSINT)

FinanceProfessional&Technical ServicesEducational ServicesOtherPublic AdministrationInsuranceBusiness Schools and Computer and Management TrainingIndividual and Family ServicesBanking

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com prinzfkbjiazbrur4mjje6mntjc4vydx3iatkkzycufoylqcoo4y7pqd.onion