malekteam logo

malekteam

1 incidentes 1 paises 1 sectores ransomware IR Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
MalekTeam is an Iranian-linked threat actor group that emerged in October 2023, operating primarily as a ransomware and wiper group. The group is assessed with moderate confidence to be tied to Iranian military intelligence, evidenced by its timing of emergence coinciding with the Israel-Hamas conflict and a consistent focus on Israeli organizations. While their attacks include financial extortion through ransomware, they often employ destructive wiper malware, sometimes disguised as ransomware, suggesting a motivation that encompasses both financial gain and geopolitical disruption. They utilize double extortion tactics, exfiltrating data and threatening its public release in addition to encrypting victim systems.
Malware asociado
MultiLayer Wiper, Mimikatz, Apostle, BFG Agonizer
Tecnicas MITRE
T1005, T1078.002, T1562, T1074.001, TA0003, TA0002

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

Iran (1)

Paises objetivo (SOCRadar)

ArgentinaSwitzerlandSpainFinlandIsraelSingaporeTurkeyUnited States

Sectores atacados

Medical (1)

Sectores objetivo (SOCRadar)

Other Information ServicesSoftware PublishersEnterprises & HoldingAccommodationManufacturingConstructionPublic AdministrationEducational ServicesInternet PublishingSpace & Defense

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com