Dark Web Profile: Overthinker1877
Dark Web Profile: Overthinker1877 Overthinker1877 or 1877 Team have recently drawn attention for their random attacks worldwide. Although the first remarkable attack was ransomware against a Romanian ...
Dark Web Profile: Moses Staff
Dark Web Profile: Moses Staff Over the past months, the SOCRadar Analyst Team has been tracking the Iranian hacker group known as Moses Staff. The group was first spotted in October 2021 and claimed i...
Dark Web Profile: BlackCat (ALPHV)
Dark Web Profile: BlackCat (ALPHV) [Update] December 19, 2023: As we speculated recently, law enforcement agencies have successfully taken control of the official site of the ALPHV.** Read more under ...
Dark Web Profile: Vice Society Ransomware Group
Dark Web Profile: Vice Society Ransomware Group By SOCRadar Research In recent years, the ransomware threat has snowballed. Many new actors have begun to show their heads in the scene and target organ...
Dark Web Threat Profile: pompompurin
Dark Web Threat Profile: pompompurin [Update] June 26, 2023: BreachForums was seized by the FBI three months after the arrest of its administrator. Added the subheading “FBI Seizes BreachForums After ...
Dark Web Profile: Netwalker Ransomware
Dark Web Profile: Netwalker Ransomware Today, with the effects of digitalization, most of the information is stored online. This situation creates a vulnerability for organizations because the number ...
Deep Web Profile: REvil
Deep Web Profile: REvil REvil is a ransomware hacking group, as its name suggests -REvil = “ransomware” + “evil”-. This ransomware group is thought to be centered in Russia. It is also named “Sodinoki...
Deep Web Profile: Karakurt Extortion Group
Deep Web Profile: Karakurt Extortion Group Karakurt has extorted sensitive data from nearly 40 different organizations within a year, a Russian-originated cybercriminal organization. So what is the ca...
Deep Web Profile: AgainstTheWest / BlueHornet [Part 2]
Deep Web Profile: AgainstTheWest / BlueHornet [Part 2] As explained in the first part, the famous leak group AgainstTheWest/BlueHornet decided to shut their operations after their unsuccessful private...
Deep Web Profile: AgainstTheWest / BlueHornet [Part 1]
Deep Web Profile: AgainstTheWest / BlueHornet [Part 1] In October 2021, a new leak group emerged in RaidForums with the handle AgainstTheWest. They have started actively targeting major organizations ...
Dark Web Profile: Lapsus$ Extortion Group
Dark Web Profile: Lapsus$ Extortion Group [Update] August 11, 2023: The Cyber Safety Review Board (CSRB) published a review of the Lapsus$ extortion group’s attacks. Read more under: “A Review of Laps...
Dark Web Profile: AvosLocker Ransomware
Dark Web Profile: AvosLocker Ransomware AvosLocker was first detected in 2021, and it usually appears as ransomware targeting Windows systems. After a variant targeting Linux environments emerged, str...
Deep Web Profile: APT41/Double Dragon
Deep Web Profile: APT41/Double Dragon APT41 (also known as Double Dragon) is a well-known cyber threat group that carries out Chinese state-sponsored espionage as well as financially motivated operati...
Dark Web Profile: Who is 'Stormous Ransomware' Claiming to Leak Epic G...
Dark Web Profile: Who is ‘Stormous Ransomware’ Claiming to Leak Epic Games Information [Update] July 28, 2023: The Stormous ransomware gang has recently made a comeback. Added the subheading: “Stormou...
Dark Web Threat Profile: Cuba Ransomware Group
Dark Web Threat Profile: Cuba Ransomware Group Cuba is a C++ based ransomware, and Cuba Ransomware group uses it as the final step payload for double extortion attacks. Operators utilize Cuba in combi...
APT Profile: Who is Phosphorus?
APT Profile: Who is Phosphorus? Phosphorus is an attack group linked to the Iranian government, also known as Charming Kitten, Ajax Security, NewsBeef, which has been very active since 2017. Its targe...
APT Profile: Who is Lazarus Group?
APT Profile: Who is Lazarus Group? By SOCRadar Research [Update] December 12, 2023: See the subheading: “Lazarus Uses Log4Shell in Operation Blacksmith, Deploys New Malware: NineRAT, DLRAT, and Bottom...
Dark Web Profile: Phobos Ransomware
Dark Web Profile: Phobos Ransomware Phobos ransomware, first discovered in December 2018, is another notorious cyber threat that targets businesses. Unlike other cybercrime gangs that go after big hun...
Dark Web Threat Profile: Grief Ransomware Group
Dark Web Threat Profile: Grief Ransomware Group New ransomware called Grief was considered to be a new operation at first. Security researchers noticed that a new Grief gang carries similarities with ...
Dark Web Threat Profile: BlackMatter Ransomware Group
Dark Web Threat Profile: BlackMatter Ransomware Group We continue to convey the latest news on ransomware on our blog. Cybersecurity researchers have warned of emerging ransomware groups almost every ...