Ido Cohen: Threat Group Update Prinz Eugen has launched a newly redesigned leak site and updated its public profile. According to the group's latest statement, it describes itself as a for-profit organization that "specializes in hacking" while claiming it currently does not operate a Ransomware-as-a-Service (RaaS) program. The group also stated that membership intake is currently closed and limited to existing core members.2026-06-22
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Weekly Ransomware & Cyber Extortion Intelligence Report Our platform continuously monitors ransomware groups and darknet activity worldwide.2026-06-22
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Keywest Projects2026-06-22
thegentlemenransomwareCanada
Keywest Projects, una empresa canadiense especializada en proyectos de energía y infraestructura industrial, ha sido objeto de un ataque cibernético atribuido al grupo thegentlemen. La alert...
Royal Thai Navy Housing Cooperative2026-06-22
thegentlemenransomwareThailand
El grupo thegentlemen ha sido identificado como el responsable de un ataque de ransomware contra la Royal Thai Navy Housing Cooperative, una organización basada en Bangkok, Thailand. La empr...
Rowley Properties2026-06-22
thegentlemenransomwareUnited Kingdom
Una empresa de propiedad inmobiliaria basada en Washington, Rowley Properties, ha sido afectada por un ataque de ransomware atribuido al grupo "thegentlemen". La empresa, fundada en 1954 y e...
Ido Cohen: Supply Chain Extortion Alert The Icarus ransomware group has escalated pressure tactics against a major Canadian consulting and competitive intelligence provider. After initially naming the organization, the group is now threatening to release data belonging to the company's clients, giving them a deadline to make contact before publication begins.2026-06-21
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: New Ransomware Groups Added to DarkFeed Over the past few days, we added two new ransomware/extortion groups to the DarkFeed intelligence platform: SevyWare A newly launched RaaS operation claiming ties to former members of established ransomware groups. The operators are actively recruiting Initial Access Brokers and insiders while promoting an aggressive affiliate-focused model.2026-06-21
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.