Indicators are what attackers leave behind. Stolen credentials are what they arrive with.
critical threatRansomwareMalware Family
Historical
INC Ransom
Critical severity
134
IOCs Tracked
—
First Seen
—
Last Seen
0
YARA Rules
Associated IOCs134 total · showing 50
SHA25629
1b39f9b2b96a6586c4a11ab2fdbff8fdf16ba5a0ac7603149023d73f33b844982026-10-09High
06f434695f93d7fd11eeff71358ff69fed79d310a66d993bbcc4ff979c117c902026-10-09High
9cfe9b894af68946ddc7e6f4cbdb085a92c4009ea00554c407beb5a8fc29f6b72026-10-09High
55a81d88fff3dc3de0e42724b0a992d4ef382b0e1a82187abf9d635ab89b2bae2026-10-09High
e950d03c58d49e28e31df8afeefca1f3b3d2cd6b697c40adfee1a4f6fe18f0042026-10-09High
8af1afc82c0d578a54cc34d09544a0695ec2b0d5f244bf1f1bb4993ee76147342026-10-09High
ef431e36a8ac12051af588d800e1d8128d583a9d4c68187709263a13564081cd2026-10-09High
bac340524549410f51b060f21abb7db30c0c5378edd2e3ac15b526e141417e892026-10-09High
295fc584f75e94108c9be945977db33ed80421f5d374eab188587c911dffd9152026-10-09High
ac6806c89e294f390838cb07c015dabec1c8ada06ce5161a0ad50b8a728281412026-10-09High
bf14cd6c3328ebd08e940478b5d1da04e9e5aa576d045d41950bf4f1e2456dd82026-10-09High
eddbd0ecf7195d38fefae5b9d393abfa79e6f3f94bde19308ecef130a05a42e52026-10-09High
250d4fa37488af9b025333fa17705573d721467b203765bc360890b4f5a90cd72026-10-09High
28685dff00aa1752b62a8580955b2530d63092bdcc0528b872a668cddad78c112026-10-09High
f3c64014221a58f3fde88e562662dbd5a1b3dd2b59c86e9e2bc5cb8f671664e72026-10-09High
bc7d24f5cf8937b334966201bdcce8ca9bab6ec5889d40a399d4094dcad733602026-10-09High
0dc6a5ce14838813e297a83e3c3c0868c7a211ee2da9c9705e5a282e65f089fe2026-10-09High
290d41e7436238066a8aacbd63a805aeeefc00d8798116dc702eccf6df3eae372026-10-09High
7d6f6dcb17a423bdd7715f8a4e34f2939501a761bc9bf7aa005f805ef1f822882026-10-09High
3ec3151d8d1278ed966941ac89ea495ef6a80c70613dd9138cc85fc28c9df4322026-10-09High
CVE21
CVE-2025-497042026-10-09High
CVE-2022-261342026-10-09High
CVE-2025-537712026-10-09High
CVE-2025-497062026-10-09High
CVE-2023-225182026-10-09High
CVE-2021-219742026-10-09High
CVE-2024-407662026-10-09High
CVE-2025-551822026-10-09High
CVE-2025-32482026-10-09High
CVE-2026-215092026-10-09High
CVE-2023-466042026-10-09High
CVE-2025-537702026-10-09High
CVE-2024-34002026-10-09High
CVE-2023-343622026-10-09High
CVE-2026-850462026-10-09High
CVE-2021-330442026-10-09High
CVE-2022-301902026-10-09High
CVE-2021-40342026-10-09High
CVE-2022-479862026-10-09High
CVE-2023-13892026-10-09High
Related Reports12 shown
CRPx0 ClickFix Ransomware Analysis
Ransom-ISACAug 27, 2026
Targeting the Systems Behind the Mission: OT Threats to US Critical Infrastructure and Military Operations
PolySwarmOct 5, 2026
The Job Offer Has Claws: Mirage Kitten Deploys NodeRabbit and PollCat
PolySwarmSep 8, 2026
Gamers Get Played: Fake GTA6 Leaks Deliver a Grab Bag of Malware
PolySwarmSep 14, 2026
BraZetsu: AI-Enhanced Reconnaissance Fuels Exilware’s Access Marketplace
PolySwarmSep 11, 2026
Lunex Uses BYOVD to Disable Security Monitoring and Deploy Persistent Stealer
PolySwarmOct 2, 2026
CLOSEDQUORUM: Malware Puts AI in the C2 Loop
PolySwarmSep 28, 2026
FamousSparrow Takes Flight with New SparroWocky Backdoor
PolySwarmSep 25, 2026
China and the Cyber Arms Race for AI Supremacy
PolySwarmSep 21, 2026
BlueMoon Exploit Kit Rapidly Targets Key Verticals Across Multiple Espionage Campaigns
PolySwarmSep 21, 2026
INC Ransomware Uses LOLBins, RMM Tools, and rclone for Network Intrusion and Data Exfiltration
Cyber PressJun 19, 2026
IT threat evolution in Q1 2026. Non-mobile statistics
SecurelistMay 18, 2026
Threat Profile
TypeRansomware
StatusHistorical
IOCs tracked134