toufan logo

toufan

1 incidentes 0 paises 0 sectores ransomware IR Ultimo: 2026-06-25
Aliases: Cyber Toufan, Cyber Toufan Al-Aksa
Ver en IntelTracker → APTTrail →
Toufan is a ransomware group that emerged in late 2025, operating with a clear political motivation rooted in the Israeli-Palestinian conflict. The group distinguishes itself by using cyberattacks as a form of political retribution, primarily targeting organizations perceived to be involved in actions against Gaza. Their core motivation is ideological, aiming to disrupt and expose entities linked to their declared adversaries, rather than focusing solely on financial gain, although they do demand ransoms.
Tecnicas MITRE
T1566.001, T1078, T1486, T1068

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

AustraliaCanadaFranceUnited KingdomIsraelPakistanQatarSingaporeUnited States

Sectores objetivo (SOCRadar)

Food ManufacturingOther Information ServicesRail TransportationSoftware PublishersAir TransportationManufacturingConstructionPublic AdministrationEducational ServicesWholesale Trade

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com