Track and analyze APT groups, ransomware gangs, hacktivists and cybercrime organizations — their targets, malware, techniques and IOCs updated in real time.
National Security and International AffairsData Processing, Hosting, and Related ServicesComputer Systems Design and Related ServicesAdvertising Agencies
T1195 - Supply Chain CompromiseT1140 - Deobfuscate/Decode Files or InformationT1199 - Trusted RelationshipT1003 - OS Credential Dumping
View Details
Top Ransomware Groups
402
Team Underground
Ransomware
Underground · TeamUnderground
#1
10.9MAudience
0News
42IOCs
Target Countries
United Arab EmiratesAustraliaBrazilCanada
Target Sectors
Construction of BuildingsOther Information ServicesHospitalsManufacturing
Associated Malware
—
Related CVEs
CVE-2023-36884
ATT&CK IDs
T1021.002T1059.003T1018T1105
View Details
el dorado
Ransomware
El-Dorado · Global · BlackLock · Eldorado
#2
4.1MAudience
62News
9kIOCs
Target Countries
United Arab EmiratesArgentinaAustraliaAruba
Target Sectors
Construction of BuildingsOther Information ServicesSoftware PublishersReal Estate
Associated Malware
—
Related CVEs
CVE-2021-21974
ATT&CK IDs
—
View Details
payload
Ransomware
#3
4.0MAudience
77News
23kIOCs
Target Countries
United Arab EmiratesAustriaAustraliaBahrain
Target Sectors
Construction of BuildingsFood ManufacturingOther Information ServicesSoftware Publishers
Associated Malware
—
Related CVEs
CVE-2025-59287
ATT&CK IDs
—
View Details
VoidCrypt
Ransomware
Chaos · Dark · Void
#4
3.4MAudience
0News
18kIOCs
Target Countries
AustraliaCanadaGermanyUnited Kingdom
Target Sectors
Construction of BuildingsSoftware PublishersEnterprises & HoldingAir Transportation
Associated Malware
—
Related CVEs
—
ATT&CK IDs
—
View Details
SOCRadar Threat Actor Database is a free repository of structured intelligence profiles covering over 500 documented cyber threat actors — nation-state APT groups, ransomware operations, hacktivist collectives and financially motivated cybercrime organizations. Each profile aggregates origin country, targeted sectors and geographies, attributed malware families, known aliases, historical campaigns, MITRE ATT&CK technique coverage and indicators of compromise. No account required.
F.A.Q.
Common questions about threat actors and APT groups
We value your privacy
We use cookies to improve your experience, analyze traffic, and personalize content. You can accept all or customize your preferences. Privacy Policy