trisec logo

trisec

1 incidentes 0 paises 1 sectores ransomware TN Ultimo: 2026-06-25
Aliases: Tri-sec Vision, Trisec Vision, Tri-sec
Ver en IntelTracker → APTTrail →
Trisec is a ransomware group that emerged in February 2024, notably distinguishing itself through an open affiliation with Tunisia and a stated motivation encompassing both financial gain and "glory to Tunisia." The group recruits exclusively Tunisian blackhats and operates with a unique blend of financially motivated and potentially state-sponsored activities, indicating a cyber mercenary model. They leverage double extortion tactics, exfiltrating data before encrypting systems and threatening to leak sensitive information if ransoms are not paid. Unlike some ransomware groups, Trisec has been observed negotiating ransom amounts, sometimes inviting victims to offer a price rather than adhering to a fixed demand. They have been known to use aliases such as Tri-Security Vision and Trisec Vision.
Tecnicas MITRE
T1566.001, T1190, T1059.003, T1047, T1071.001

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

BrazilUnited KingdomCroatiaIrelandItalyMexicoSwedenUnited States

Sectores atacados

Government (1)

Sectores objetivo (SOCRadar)

AccommodationManufacturingEducational ServicesEnergy & Utilities Aircraft ManufacturingAutomotiveTelecommunicationsTransportation&WarehousingRetailInformation Services

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com