Ransomware Intelligence

tridentlocker

Ransomware group profile

16Victims
50Impact score

Description

TridentLocker is a ransomware-as-a-service (RaaS) operation that emerged in late 2025, utilizing double-extortion tactics to pressurize victims for financial gain. The group encrypts systems while threatening to release stolen data, demonstrating sophisticated operational security and a rapid pace of attacks across various sectors.

Key insights

  • Employs double-extortion tactics by encrypting systems and threatening to leak stolen data.
  • Gains initial access through credential abuse and privilege escalation techniques.
  • Targets a diverse range of sectors, indicating a broad operational focus.
  • Utilizes proprietary ransomware while engaging in data exfiltration prior to encryption.
  • Demonstrates high operational security, allowing prolonged undetected presence within networks.

Threat Level & Status Breakdown

For tridentlocker · Based on incidents in selected period

1.4threat level
Aggressiveness4/ 10
Lethality0/ 10
Criticality0/ 10

Status Breakdown

Claimed100.0%16
First seenOct 2025
Last seenApr 2026
Avg ransom
Payment rate
Statusactive
Sophistication0
Last updatedJun 2, 2026

Recent activity

Monthly attack count for tridentlocker in the selected period

16Total attacks
8peak in Nov
2.3avg / month
↓ 1 vs first month
OctNovDecJanFebMarApr02468

Intelligence

IOCs, YARA/Sigma rules, and related families for tridentlocker

  1. d520d06d78afcad2e03842cb8db4622d18b92739e89dfb8dadf5743f30dcd903
  2. e75e5778e71e062ce4a7af673f0b2513854d2367fee0f01a26c0c998863bdf6e
  3. eae09889399fe4fb8e78b114dba0527de913d12fb1802944a88ed136e3e90577
  4. 94f73b5dc06ba6705fcef3e759413a747049c2949a0c2e44afc03b2f9989cf73
View full IOC feed500 total

TTPs & Attack Vectors

Tools, initial access, and MITRE ATT&CK techniques for tridentlocker

Other

T1486

T1486

T1490

T1490

T1078

T1078

T1046

T1046

T1562

T1562

T1021

T1021

T1033

T1033

T1021.001

T1021.001

T1020

T1020

T1059

T1059

T1005

T1005

Victims(16)

CompanyDomainCountryIndustryStatusDiscovered
RT SoftwareGB United KingdomTechnology
Claimed
about 1 month ago
Jameson Pepple Cantu PLLCjpclaw.comUS United StatesProfessional Services
Claimed
3 months ago
TMPartnertm-partner.chJP JapanProfessional Services
Claimed
4 months ago
Eco Green Groupecogreengroup.co.ukGB United KingdomEnergy & Utilities
Claimed
5 months ago
Sedgwick Government Solutionssedgwickgovernment.comUS United StatesGovernment & Defense
Claimed
5 months ago
allenprintingallenprinting.comUS United StatesProfessional Services
Claimed
6 months ago
GuestTekguesttek.comCA CanadaTechnology
Claimed
6 months ago
Advantage 360advantage360.comUS United StatesTechnology
Claimed
6 months ago
iqsIQ IraqManufacturing
Claimed
6 months ago
nomentnoment.comUS United StatesTechnology
Claimed
6 months ago
LMG Holdingslmgholdings.comUS United StatesManufacturing
Claimed
6 months ago
bpostbpost.beBE BelgiumTechnology
Claimed
6 months ago
typecaseinctypecaseinc.comUS United StatesTechnology
Claimed
6 months ago
asiawbaasiawba.comKR South KoreaFinancial Services
Claimed
6 months ago
Calmeccalmec.comCA CanadaManufacturing
Claimed
6 months ago
EnQuestenquest.comGB United KingdomEnergy & Utilities
Claimed
6 months ago