Meowciety403 is an extortion and ransomware group that surfaced in August 2026. It operates a Tor-based data leak site to publish stolen corporate files and extort ransoms from victims, primarily targeting private corporate and financial services infrastructure in regions like Singapore and the United Arab Emirates.
Key insights
•The group engages in extortion by publishing stolen corporate data to prompt ransom negotiations.
•Operators exfiltrate sensitive proprietary corporate data, including financial documents and API keys, before making it public.
•Meowciety403 utilizes a PHP-driven dark web portal for its leak operations and command control.
•The group primarily targets professional services, corporate entities, and financial brokerage organizations.
•Victims are coerced into payment through the public posting of sensitive operational documents and internal records.