dagonlocker logo

dagonlocker

1 incidentes 0 paises 0 sectores ransomware Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
Dagon Locker is a ransomware group that emerged in September 2022 as an evolution of Quantum ransomware, also noted as an updated variant of Mount Locker ransomware. Operating as a Ransomware-as-a-Service (RaaS) model, the group's primary motivation is financial gain through double extortion, demanding payment for data decryption and threatening to leak exfiltrated sensitive information. A defining characteristic of Dagon Locker is its use of strong encryption algorithms, specifically AES-256 and RSA-4096, combined with appending the unique ".dagon" or ".dagoned" extension to encrypted files. The group is distinguished by its direct lineage from earlier ransomware strains and its consistent application of double extortion tactics, including the use of dark web leak sites for public pressure.
Tecnicas MITRE
TA0001 Initial Access, TA0002 Execution, TA0005 Defense Evasion, TA0007 Discovery, TA0008 Lateral Movement, TA0011 Command and Control

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

AustraliaCanadaKorea, Republic ofNetherlandsSingaporeUnited States

Sectores objetivo (SOCRadar)

Energy & Utilities ManufacturingRetailTransportation&WarehousingInformation ServicesFinanceEducational ServicesHealthCare & Social AssistanceOtherPublic Administration

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com