Uptime Hamster: 22d 18h 29mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

10,901Incidentes
3,699Filtrados
1,119Actores
10,235IOCs visibles
Limpiar
Mapa
104
Paises afectados
Alertas
5,893
Amenazas recientes
Brechas
7,163
Filtraciones y victimas
Hackeos
8,853
Incidentes investigables

Actividad filtrada

TTPs principales

T1566513
T10034
T10783
T10553
T15622
T10212
T14862
T10592

Actores

qilin170
thegentlemen152
akira84
dragonforce83
incransom73
lockbit571
anggipradana51
nightspire47
shinyhunters38
deadlock37

Paises

United States1422
China129
United Kingdom125
Germany87
Canada53
Russia52
India48
Brazil46
France43
Italy39

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States1422 incidentes China129 incidentes United Kingdom125 incidentes Germany87 incidentes Canada53 incidentes Russia52 incidentes India48 incidentes Brazil46 incidentes France43 incidentes Italy39 incidentes Australia37 incidentes Spain36 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
3,699 resultados · pagina 15/103Exportar CSV
Dark Web Informer: Government of Colima e-signature system compromise claim posted on a forum ACTIVA appears to be tied to the advanced electronic signature system used by the Government of the State of Colima, Mexico. A forum user claims they gained administrator access to the ACTIVA Firma portal and allegedly deleted users from the system, leaving only an administrator account under their control.2026-06-28
x-cticampaignMexico
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Daily Dark Web: Pinned: New Linux "pedit COW" Privilege Escalation Exploit Published Security researcher Massimiliano Oldani has released a public proof-of-concept (PoC) exploit, **packet_edit_meme**, for the Linux kernel vulnerability **CVE-2026-46331**, nicknamed **pedit COW**. * The flaw resides in Linux's **net/sched act_pedit** traffic control subsystem and allows an unprivileged local user to escalate privileges to **root** by corrupting shared page-cache memory.2026-06-28
x-ctivulnerabilityUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Don't believe everything you see lurking in the viral corners of the web. #DailyDarkWeb #ViralHoax #CGI #Debunked #Physics2026-06-28
x-cticampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Clearcover Customer Data Allegedly Offered for Sale A threat actor claims to be selling a database allegedly belonging to U.S. auto insurer Clearcover. * According to the forum post, the dataset is dated **25 June 2026** and allegedly contains **448,603** records.2026-06-28
x-ctibreachUnknownT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Alleged Compromise of Colima State Government Electronic Signature System A threat actor claims to have compromised the Advanced Electronic Signature (Firma Electrónica Avanzada) platform used by the Government of the State of Colima, Mexico. * According to the forum post, the actor alleges they: * Gained administrative access to the portal. * Deleted all user accounts except a single administrator account. * Retained control of the remaining administrative account.2026-06-28
x-cticampaignMexico
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Call of Duty: Mobile Internal Offsets Allegedly Released A forum user has shared what they claim is an internal `offsets dump.cs` file for the global version of Call of Duty: Mobile (package: `com.activision.callofduty.shooter`). The post includes a public download link and states the file will be reposted if the original link becomes unavailable.2026-06-28
x-ctibreachUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: French Hospital Patient Database Allegedly Repackaged and Shared A threat actor has published what they claim is a reformatted dataset originating from the 2024 Blackout ransomware leak targeting Centre Hospitalier d'Armentières in France. According to the post, the dataset contains information on approximately 203,928 patients, covering records from 2004 through March 2018.2026-06-28
x-ctiransomwareFranceT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Hackmanac: #PollResults Turns out what worries you most for H2 2026 is 𝐒𝐮𝐩𝐩𝐥𝐲 𝐂𝐡𝐚𝐢𝐧 𝐚𝐭𝐭𝐚𝐜𝐤𝐬 (𝟑𝟒%). Thanks to everyone who voted and see you at next #MondayPoll!2026-06-28
H4ckmanacransomwareUnknownT1566
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
straightperformance.de2026-06-28
unsaferansomwareGermany
El 28 de junio de 2026 se reportó un incidente de ransomware afectando a la organización straightperformance.de, cuya pérdida económica fue estimada en 2 millones de dólares. El ataque fue a...
Ido Cohen: New Ransomware Group: Settra Settra has entered the ransomware landscape with 10+ published victims already listed on its leak site. Unlike groups that attempt to justify their actions, Settra openly states its motivation is simple: money. The group claims it does not target specific countries or industries—it targets organizations with exploitable security weaknesses.2026-06-27
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
MalwareHunterTeam: Image2026-06-27
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
Ransomware Victim: callhorton.com (incransom)2026-06-26
incransomransomwareUnknown
Victima de ransomware reportada en el dashboard de incransom.
Ransomware Victim: johndufourlaw.com (incransom)2026-06-26
incransomransomwareUnknown
Victima de ransomware reportada en el dashboard de incransom.
Ransomware Victim: theswansonlawgroup.com (incransom)2026-06-26
incransomransomwareUnknown
Victima de ransomware reportada en el dashboard de incransom.
Benchmark Industrial Supply2026-06-26
playransomwareUnited States
Una empresa de suministro industrial llamada Benchmark Industrial Supply ha sido afectada por un ataque cibernético atribuido al grupo "play". El incidente ocurrió el 26 de junio de 2026 y s...
Ransomware Victim: Clínica La Sabana (payload)2026-06-26
anggipradanaransomwareColombia
Victima de ransomware reportada en el dashboard de payload.
Ransomware Victim: Software Arge (payload)2026-06-26
anggipradanaransomwareUnited States
Victima de ransomware reportada en el dashboard de payload.
Ransomware Victim: Mosaic Partners (payload)2026-06-26
anggipradanaransomwareUnknown
Victima de ransomware reportada en el dashboard de payload.
Kohinoor Mills2026-06-26
cmdorganizationransomwareIndia
Un ataque de ransomware afectó recientemente a Kohinoor Mills, una empresa líder en la producción textil en Pakistán. El grupo cybercriminal conocido como cmdorganization se ha asociado con ...
Ido Cohen: Two ransomware groups are showing a sharp increase in activity during 2026. SafePay Q1 2026: 22 victims Q2 2026: 59 victims (+168%) RALord (Nova) Q1 2026: 14 victims Q2 2026: 60 victims (+329%) Both groups have significantly accelerated their operations in recent months, making them two of the fastest-growing ransomware threats to watch. Track ransomware trends and emerging threat groups with DarkFeed.2026-06-26
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Tracking the pulse of ransomware in 2026—these are the groups leading the global attack landscape right now: Qilin – 665 attacks The Gentleman – 453 attacks Akira – 290 attacks DragonForce – 245 attacks INC – 239 attacks Lockbit – 199 attacks Play – 154 attacks CLOP – 127 attacks NightSpire – 115 attacks CoinBase Cartel – 97 attacks Stay ahead of ransomware threats.2026-06-26
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ransomware Monitor: Actor: #akira Victim: Precise Forms Date: 2026-06-26 19:01:44 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#akira” Ransomware group has added Precise Forms to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #nova Victim: NSW Rural Fire Service Date: 2026-06-26 17:15:21 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#nova” Ransomware group has added NSW Rural Fire Service to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #payload Victim: Software Arge Date: 2026-06-26 17:19:44 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#payload” Ransomware group has added Software Arge to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #payload Victim: Clínica La Sabana Date: 2026-06-26 17:19:50 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#payload” Ransomware group has added Clínica La Sabana to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #nova Victim: vslmarine Date: 2026-06-26 14:13:51 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#nova” Ransomware group has added vslmarine to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #payload Victim: Mosaic Partners Date: 2026-06-26 16:17:54 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#payload” Ransomware group has added Mosaic Partners to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #ailock Victim: Hokua Date: 2026-06-26 14:38:35 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#ailock” Ransomware group has added Hokua to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #incransom Victim: Life Bridges Date: 2026-06-26 05:08:35 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#incransom” Ransomware group has added Life Bridges to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #nightspire Victim: Grupo Riquelme Date: 2026-06-26 03:15:53 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#nightspire” Ransomware group has added Grupo Riquelme to its victims.2026-06-26
x-ctiransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
MalwareHunterTeam: And @smica83 uploaded the sample to Bazaar:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: List of names: "CamScanner 19-06-2026 16.49.accdr" "Adv Int Course (Rome).accdr" "Expression of Interest (EOI).accdr" "Security Orientation Course-41.accdr" "001210.accdr" "Proposal for Area Admin Meeting - SLNS Barana.accdr" "UN-System-wide-Strategy-on-SSC-2026-2029.accdr" ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: 51.79.138[.]177 ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And @smica83 uploaded a realted sample to Bazaar:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: Both domains are on 202.1.31[.]73... ‍2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: And the mentioned sample is now on Bazaar thanks to @smica83:2026-06-26
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.