
Dark Web Profile: DragonForce Ransomware
Dark Web Profile: DragonForce Ransomware June 12, 2025: The blog content has been fully updated. DragonForce Ransomware has emerged as an intriguing adversary. Known for its prom...

Dark Web Profile: NightSpire Ransomware
Dark Web Profile: NightSpire Ransomware NightSpire is a financially motivated ransomware group that emerged in early 2025. The group employs a double extortion strategy, encrypting victims’ dat...

Dark Web Profile: Aquatic Panda
Dark Web Profile: Aquatic Panda Aquatic Panda is a suspected China-based threat group focused on intelligence gathering and industrial espionage. From around 2016 to 2023, the Chinese tech company i-S...

Dark Web Profile: Silent Ransom Group (LeakedData)
Dark Web Profile: Silent Ransom Group (LeakedData) A threat group identifying itself as LeakedData emerged in mid-December 2024, claiming responsibility for attacks on at least 41 victims. Header of ...

Dark Web Profile: Flax Typhoon
Dark Web Profile: Flax Typhoon Intelligence reports confirm that Flax Typhoon (also tracked as RedJuliett and Ethereal Panda) is a sophisticated Chinese state-sponsored Advanced Persistent Threat (APT...

Dark Web Profile: Babuk/Babuk2
Dark Web Profile: Babuk/Babuk2 Babuk, originally emerging in 2020, became infamous for its ransomware attacks on large organizations and government agencies. After internal conflicts led to the leak o...

Dark Web Profile: FSociety (Flocker) Ransomware
Dark Web Profile: FSociety (Flocker) Ransomware FSociety or Flocker ransomware, discovered in 2024, is a relatively new strain operating as Ransomware-as-a-Service (RaaS), enabling cybercriminals to e...

Dark Web Profile: APT35
Dark Web Profile: APT35 APT35, also known as Charming Kitten, Phosphorus, Mint Sandstorm, and many other names, is an Iranian state-sponsored cyberwarfare group classified as an advanced persistent th...

Dark Web Profile: Ghost (Cring) Ransomware
Dark Web Profile: Ghost (Cring) Ransomware In February 2025, the Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with the Federal Bureau of Investigation (FBI) and the Multi-...

Top 10 Advanced Persistent Threat (APT) Groups That Dominated 2024
Top 10 Advanced Persistent Threat (APT) Groups That Dominated 2024 Advanced Persistent Threats (APTs) are among the most sophisticated and persistent cyber adversaries in the world. Unlike ordinary cy...

Dark Web Profile: Fog Ransomware
Dark Web Profile: Fog Ransomware Fog Ransomware emerged in April 2024, was first detected in the wild in early May, primarily targeting US based educational institutions targeting both Windows and Lin...

Dark Web Profile: Tortoiseshell APT
Dark Web Profile: Tortoiseshell APT In recent years, Iran has ramped up cyber campaigns to safeguard national interests, deter adversaries, and conduct espionage. These operations are carried out by u...

Dark Web Profile: RA World
Dark Web Profile: RA World RA World is believed to be a rebranded iteration of the ransomware operation previously known as RA Group. This is because it employed the same extortion and encryption tech...

Dark Web Profile: Termite Ransomware
Dark Web Profile: Termite Ransomware The dark web, a hidden part of the internet, remains a source of growing cyber threats, with ransomware being one of the most prominent. Among these threats, Termi...

Dark Web Profile: FunkSec
Dark Web Profile: FunkSec [Update] January 4, 2024: “Update: FunkSec Expands Their Operation and Teams Up With Other Cyber Criminals” A new ransomware group, FunkSec, has gained attention after taking...

Dark Web Profile: OilRig (APT34)
Dark Web Profile: OilRig (APT34) OilRig, also known as APT34, is a state-sponsored Advanced Persistent Threat (APT) group with strong ties to Iranian intelligence. Known for its sophisticated cyber-es...

Dark Web Profile: Kairos Extortion Group
Dark Web Profile: Kairos Extortion Group Kairos is a low-profile but rising cyber extortion group that has been active since late 2024. Unlike many of its counterparts, Kairos does not rely on ransomw...

Dark Web Profile: Gamaredon APT
Dark Web Profile: Gamaredon APT Gamaredon APT is a notorious Russian cyber espionage group active since 2013. Closely linked to Moscow’s Federal Security Service (FSB), it has primarily targeted...

Dark Web Profile: Storm-842 (Void Manticore)
Dark Web Profile: Storm-842 (Void Manticore) On September 23, 2022, the Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) released a joint advisory ...

Dark Web Profile: Trinity Ransomware
Dark Web Profile: Trinity Ransomware First discovered in May 2024, the Trinity ransomware has quickly positioned itself as a significant actor in the threat landscape. Leveraging a double extortion ta...