flocker logo

flocker

1 incidentes 0 paises 0 sectores ransomware Ultimo: 2026-06-25
Aliases: flocker, FSociety
Ver en IntelTracker → APTTrail →
Flocker is a ransomware group that emerged in April 2024, operating under a Ransomware-as-a-Service (RaaS) model and also known by the alias FSociety. While some sources link it to an earlier 2016 FSociety variant, the current iteration exhibits significant differences in its tactics and advanced ransomware tools. The group's primary motivation is financial gain through double extortion, where they not only encrypt victims' data but also threaten to leak sensitive information if ransom demands are not met. They distinguish themselves by forming alliances with other cybercriminal entities like FunkSec, leveraging combined strengths for more effective operations and distributing their malware to affiliates. This collaboration enables faster attack cycles by sharing resources such as botnets and initial access broker services. Flocker maintains a Telegram group and an Onion site for communication and operations. The group typically targets small to medium-sized enterprises.
Tecnicas MITRE
T1566.001, T1078.001, T1059.001, T1082, T1496

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

United Arab EmiratesAustraliaCanadaGermanyUnited KingdomIsraelIndiaItalyCayman IslandsMorocco

Sectores objetivo (SOCRadar)

Construction of BuildingsOther Information ServicesSoftware PublishersHospitalsEnterprises & HoldingManufacturingConstructionPublic AdministrationEducational ServicesWholesale Trade

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com