mogilevich logo

mogilevich

1 incidentes 0 paises 0 sectores ransomware RU Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
Mogilevich emerged in February 2024 as a short-lived operation that presented itself as a ransomware-as-a-service (RaaS) group dedicated to data extortion, primarily motivated by financial gain through fraudulent means. Believed to hail from Russia, the group gained rapid notoriety by falsely claiming high-profile data breaches against various large organizations, such as Infiniti USA, Epic Games, DJI, and Ireland’s Department of Foreign Affairs. What distinguishes Mogilevich is its unique operational model: it was never a genuine ransomware threat actor, but rather an elaborate scam operation. Its operators confessed in early March 2024 to being "professional fraudsters" who trafficked in fake breach data, fabricated RaaS access panels, and misled cybersecurity researchers and potential buyers, aiming to gain visibility and monetize false claims without executing actual cyberattacks or deploying ransomware.
Tecnicas MITRE
T1566.001, T1078, T1047, T1490, T1486, TA0040

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

AustraliaBangladeshChinaIrelandIndiaSingaporeUnited States

Sectores objetivo (SOCRadar)

Other Information ServicesSoftware PublishersManufacturingPublic AdministrationEducational ServicesInternet PublishingAircraft ManufacturingAutomotiveClothing StoresSoftware Publishers

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com