arkana
1 incidentes
0 paises
1 sectores
ransomware RU Ultimo: 2026-06-25
Arkana is a ransomware group that first emerged in early 2025, distinguishing itself through a unique three-phase extortion model: Ransom, Sale, and Leak. Initially appearing to operate independently, the group later demonstrated ties to the prominent Qilin Network ransomware-as-a-service (RaaS) platform, evidenced by the display of the Qilin Network logo on Arkana's dark web leak site. The group is assessed with moderate confidence to have Russian origins or affiliations, indicated by the use of Russian Cyrillic language in their communications and on their Onion site. Arkana's primary motivation is financial gain through extortion and coercive tactics. What specifically sets Arkana apart is its aggressive reliance on psychological pressure, corporate doxxing, and reputational damage as central components of its extortion strategy, rather than solely focusing on data encryption. This includes maintaining a public 'Wall of Shame' and disseminating personal information of company execut
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.
Abrir perfil →
Paises objetivo (SOCRadar)
United Kingdom
IndiaMauritius
United States
Sectores atacados
Telecom (1)
Sectores objetivo (SOCRadar)
Construction of BuildingsOther Information ServicesSoftware PublishersManufacturingConstructionOil & GasData Processing ServicesRestaurantsEnergy & Utilities Promoters of Performing Arts, Sports, and Similar Events
URLs nuevas detectadas en IntelTracker