Uptime Hamster: 27d 11h 24mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza blacktor

blacktor

2 incidentes 2 paises 0 sectores threat-actor Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
Blacktor is a low-profile data breach and extortion group first observed around late 2021. The group is primarily motivated by financial gain, conducting operations that involve encrypting victim data and maintaining a dedicated Tor-based leak site to facilitate double extortion. It is characterized by its minimal public threat intelligence coverage, making it distinct from more widely reported ransomware operations.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteupransomware.anggipradana.comRansomware Group: blacktor
DLS / onionunknownbl4cktorpms2gybrcyt52aakcxt6yn37byb65uama5cimhifcscnqkid.onionblacktor
Tecnicas MITRE
T1566.001 (Spearphishing Attachment), T1078 (Valid Accounts), T1059 (Command and Scripting Interpreter), T1021 (Remote Services), T1486 (Data Encrypted for Impact)
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

Italy (1) Indonesia (1)

Paises objetivo (OSINT)

FranceIndonesiaItalyUnited StatesVenezuela, Bolivarian Republic of

Sectores objetivo (OSINT)

Construction of BuildingsSoftware PublishersHospitalsAccommodationManufacturingConstructionPublic AdministrationEducational ServicesEnergy & Utilities Insurance

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com