Dark Web Profile: TeamPCP
Dark Web Profile: TeamPCP TeamPCP is a financially motivated cybercriminal group that executed the most consequential open-source supply chain attack campaign of 2026, compromising security tools trus...
Dark Web Profile: DieNet
Dark Web Profile: DieNet Every kinetic spike in the Iran-Israel confrontation is now mirrored by a surge of cyber activity. In this environment, DieNet has emerged as the single most prolific disrupti...
Dark Web Profile: Handala Hack
Dark Web Profile: Handala Hack [Update] March 30, 2026: “FBI Director Personal Email Breach and Escalating Operations”, “Alleged Doxxing Campaign Targets Handala Members” Not every hacktivist group is...
Dark Web Profile: APT41
Dark Web Profile: APT41 APT41 stands out in the threat landscape because it doesn’t stick to a single playbook. It has been repeatedly linked to both cyber espionage and financially motivated cybercri...
Dark Web Profile: Andariel
Dark Web Profile: Andariel Andariel operates as a North Korea–linked threat group under the Reconnaissance General Bureau (RGB). Security researchers widely assess it as a sub-cluster of the Lazarus G...
Dark Web Profile: Lotus Blossom
Dark Web Profile: Lotus Blossom Lotus Blossom is a long-running cyber espionage Advanced Persistent Threat (APT) group active since at least 2009 and widely attributed to the People’s Republic of Chin...
Dark Web Profile: Sinobi Ransomware
Dark Web Profile: Sinobi Ransomware Sinobi Ransomware is a cybercrime operation that emerged in mid-2025, operating as a Ransomware-as-a-Service model. It is believed that the group is a rebrand or di...
Dark Web Profile: The Gentlemen Ransomware
Dark Web Profile: The Gentlemen Ransomware Despite its polished name, The Gentlemen Ransomware shows little interest in playing nice. First observed in 2025, the group quickly established itself as a ...
Dark Web Profile: 0APT Ransomware
Dark Web Profile: 0APT Ransomware 0APT, also recognized as the 0APT Syndicate, is a controversial Ransomware-as-a-Service operation that surfaced in late January 2026. The group rapidly gained notorie...
Dark Web Profile: BravoX Ransomware
Dark Web Profile: BravoX Ransomware BravoX is an emerging Ransomware-as-a-Service (RaaS) operation that surfaced after the publication of a new TOR-based data leak site (DLS) following a forum post on...
Dark Web Profile: Anubis Ransomware
Dark Web Profile: Anubis Ransomware Anubis (Sphinx) ransomware is a Ransomware-as-a-Service (RaaS) group that challenges one of the core assumptions of modern ransomware response: that recovery is alw...
Dark Web Profile: APT28
Dark Web Profile: APT28 APT28 is one of the most tracked state-linked intrusion sets because its activity often aligns with major geopolitical events and long-running espionage goals. Also known as Fa...
Dark Web Profile: Orion Ransomware
Dark Web Profile: Orion Ransomware Orion Ransomware is a newly observed operation identified after the detection of a previously unknown ransomware Data Leak Site (DLS) by SOCRadar. The group emerged ...
Top 10 APT Groups in 2025
Top 10 APT Groups in 2025 Advanced Persistent Threats, known as APTs, represent some of the most capable cyber adversaries. These groups are often state-backed or part of well funded organizations and...
Top 10 Ransomware Groups of 2025
Top 10 Ransomware Groups of 2025 The Top 10 Ransomware Groups of 2025 illustrate how the ransomware ecosystem changed in structure rather than simply growing in volume. After the disruption of dominan...
Dark Web Profile: ByteToBreach
Dark Web Profile: ByteToBreach By mid-2025, the alias ByteToBreach was already an active seller on a major cybercrime forum, offering access and databases from banks, telecom, airlines, and other larg...
Dark Web Profile: Berserk Bear
Dark Web Profile: Berserk Bear Berserk Bear is a Russian state-sponsored cyber espionage group linked to the FSB. They have been active since at least 2010 under many names (Dragonfly, Energetic Bear,...
Dark Web Profile: Sarcoma Ransomware
Dark Web Profile: Sarcoma Ransomware Sarcoma ransomware group emerged in late 2024 and quickly launched aggressive double-extortion campaigns worldwide; Sarcoma’s fast-growing victim list and use of s...
Dark Web Profile: Scattered Lapsus$ Hunters
Dark Web Profile: Scattered Lapsus$ Hunters [Update] November 28, 2025: “Is the DLS Already on Its Way Out?” and “Rey, ShinySp1d3r and the Gainsight Breach” In mid-2025, attackers launched coordinated...
Dark Web Profile: Dire Wolf Ransomware
Dark Web Profile: Dire Wolf Ransomware Dire Wolf emerged in 2025 and quickly carried out disruptive ransomware attacks in multiple regions. Dire Wolf appeared on dark web leak sites within weeks and w...