Live
10,488Incidentes
653Actores
169Paises
25 JunActualizado
2026-05-27: 5 2026-05-28: 22 2026-05-29: 118 2026-05-30: 16 2026-05-31: 7 2026-06-01: 39 2026-06-02: 20 2026-06-03: 34 2026-06-04: 38 2026-06-05: 200 2026-06-06: 27 2026-06-07: 4 2026-06-08: 76 2026-06-09: 67 2026-06-10: 196 2026-06-11: 99 2026-06-12: 85 2026-06-13: 16 2026-06-14: 27 2026-06-15: 129 2026-06-16: 50 2026-06-17: 36 2026-06-18: 494 2026-06-19: 190 2026-06-20: 518 2026-06-21: 30 2026-06-22: 54 2026-06-23: 38 2026-06-24: 49 2026-06-25: 363
7d: 1,736 posts
641 grupos activos
+592 nuevos
Top: china (6.3%)
china ▲ 109 100% other-actors ▲ 74 100% bushidouk ▲ 55 100% malware---tools ▲ 54 100% unknown---unmapped-actors ▲ 44 100%
15 de 74 incidentesExportar CSV
Roaming Mantis
unknown---unmapped-actors Reference China
Que es Roaming Mantis es un actor APT (Advanced Persistent Threat) del grupo regional Unknown / Unmapped Actors, con alias como Shaoye, malicious APK, MITRE: S0509, y referencias a países como Rusia, …
AcidBox
unknown---unmapped-actors Reference United States
Que es AcidBox es un actor APT (Advanced Persistent Threat) del grupo regional Unknown / Unmapped Actors, identificado con alias como MagicScroll y referencias en fuentes de seguridad como unit42.palo…
We started monitoring the group in mid-2020 and have observed a constant level of activity that indicates a capable and stealthy actor. The main feature of this group is a specific toolset of .NET malware
unknown---unmapped-actors Reference Unknown
Que es Unknown / Unmapped Actors es un grupo de actores APT (Advanced Persistent Threat) que ha sido monitorizado desde el medio de 2020. Este actor se identifica con alias como JackalControl, JackalW…
The complexity and sophistication of the Black Kingdom family cannot bear a comparison with other Ransomware-as-a-Service (RaaS) or Big Game Hunting (BGH) families. The ransomware is coded in Python and compiled to an executable using PyInstaller; it supports two encryption modes: one generated dynamically and one using a hardcoded key. Code analysis revealed an amateurish development cycle and a possibility to recover files encrypted with Black Kingdom with the help of the hardcoded key. The industry already provided a script to recover encrypted files in case they were encrypted with the embedded key.,,https://securelist.com/black-kingdom-ransomware/102873/,https://www.bleepingcomputer.com/news/security/black-kingdom-ransomware-hacks-networks-with-pulse-vpn-flaws/,,,,,,,,,,,,
unknown---unmapped-actors Reference United States
Que es El ransomware Black Kingdom es un tipo de ciberataque que se caracteriza por su uso de Python como lenguaje de programación y PyInstaller para generar ejecutables. Este malware pertenece a una …
Winnti (Network Driver Component)
malware---tools Reference Unknown
Que es Winnti (Network Driver Component) es un componente malicioso relacionado con el grupo de actores APT (Advanced Persistent Threat) denominado Derusbi. Este malware se identifica como un backdoor…
FallChill
malware---tools Reference United States
Que es FallChill FallChill es un grupo de malware/ herramientas asociado a actividades de alto nivel de ciberataques (APT). Este actor está vinculado al Lazarus Group y al Bluenoroff, dos entidades co…
APTTrail: bisonal indicators and references
bisonal Ioc United States
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a bisonal. Aliases observados: bisonal, tonto, tontoteam. Conteo por tipo: domain: 232, file_path: 5, ipv4: 5, url: 4.Indicadores de Co…
APTTrail: APT CLOUDWIZARD indicators and references
apt-cloudwizard Ioc Unknown
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a APT CLOUDWIZARD. Aliases observados: APT CLOUDWIZARD. Conteo por tipo: domain: 1.Indicadores de Compromiso (IOCs)TipoValorContextoDom…
APTTrail: apt-c-06 indicators and references
apt-c-06 Ioc United States
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a apt-c-06. Aliases observados: apt-c-06, apt06, thinmon. Conteo por tipo: domain: 314, file_path: 7, ipv4: 3, url: 2.Indicadores de Co…
APTTrail: APT DEATHSTALKER indicators and references
apt-deathstalker Ioc Unknown ⚖️ Legal
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a APT DEATHSTALKER. Aliases observados: APT DEATHSTALKER. Conteo por tipo: domain: 167, ipv4: 4, url: 14.Indicadores de Compromiso (IOC…
APTTrail: APT DESERTFALCON indicators and references
apt-desertfalcon Ioc Unknown
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a APT DESERTFALCON. Aliases observados: APT DESERTFALCON. Conteo por tipo: domain: 23.Indicadores de Compromiso (IOCs)TipoValorContexto…
APTTrail: CR4T indicators and references
cr4t Ioc Unknown
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a CR4T. Aliases observados: CR4T. Conteo por tipo: domain: 9.Indicadores de Compromiso (IOCs)TipoValorContextoDomaincommonline.spaceAPT…
APTTrail: dinodas indicators and references
dinodas Ioc Unknown 🏛️ Government
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a dinodas. Aliases observados: dinodas, dinodasrat, linodas, linodasrat. Conteo por tipo: domain: 12, ipv4: 7, url: 5.Indicadores de Co…
APTTrail: crouching yeti indicators and references
crouching-yeti Ioc Russia
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a crouching yeti. Aliases observados: crouching yeti, dragonfly, iron liberty, tg-4192. Conteo por tipo: domain: 5, url: 2.Indicadores …
APTTrail: APT EQUATIONGROUP indicators and references
apt-equationgroup Ioc Unknown 💻 Technology
Resumen APTTrailAPTTrail mantiene indicadores publicos asociados a APT EQUATIONGROUP. Aliases observados: APT EQUATIONGROUP. Conteo por tipo: domain: 112.Indicadores de Compromiso (IOCs)TipoValorConte…