Uptime Hamster: 11d 6h 41mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
IntelTracker

Threat Intelligence Monitor

Victimas, actores, TTPs, CVEs, IOCs y referencias verificadas en una interfaz CTI indexable con filtros operativos.

11,126Incidentes
11,126Filtrados
1,127Actores
25,717IOCs visibles
Limpiar
Mapa
133
Paises afectados
Alertas
6,108
Amenazas recientes
Brechas
7,383
Filtraciones y victimas
Hackeos
9,074
Incidentes investigables

Actividad filtrada

TTPs principales

T15662083
T10037
T10595
T10554
T10784
T10214
T15623
T10533

Actores

qilin742
thegentlemen486
akira324
dragonforce283
incransom233
lockbit5210
nightspire199
play170
anggipradana165
clop131

Paises

United States4782
United Kingdom367
China362
Germany291
Canada192
France168
Italy157
Brazil138
India131
Spain123

Acciones rapidas

Mapa globalGraficosBrechasPanel clasico

Mapa de actividad

Abrir mapa completo →
United States4782 incidentes United Kingdom367 incidentes China362 incidentes Germany291 incidentes Canada192 incidentes France168 incidentes Italy157 incidentes Brazil138 incidentes India131 incidentes Spain123 incidentes Australia114 incidentes Russia112 incidentes

Filtros directos

RansomwareBrechasCVEsPhishingIntelTracker
11,126 resultados · pagina 43/310Exportar CSV
ccic.com.tw2026-06-29
blackfieldransomwareTaiwan
El 29 de junio de 2026 se reportó un incidente de ciberataque relacionado con ransomware contra la empresa Nidec Chaun-Choung Technology Corporation (CCIC), una empresa basada en Taiwán. El ...
torsiongroup.co.uk2026-06-29
settraransomwareUnited Kingdom
Una empresa especializada en la construcción de viviendas, torsiongroup.co.uk, fue víctima de un ataque cibernético el día 29 de junio de 2026. Este incidente, relacionado con el grupo malic...
Ransomware Victim: Driving School Software (PrinzEugen)2026-06-28
prinzeugenransomwareUnknown
Victima de ransomware reportada en el dashboard de PrinzEugen.
Ransomware Victim: acemacon.org (threeam)2026-06-28
threeamransomwareUnknown
Victima de ransomware reportada en el dashboard de threeam.
Ransomware Victim: Thyssenkrupp Marine Systems (TKMS) GmbH / Atlas Elektronik (thegentlemen)2026-06-28
thegentlemenransomwareGermany
Victima de ransomware reportada en el dashboard de thegentlemen.
Ransomware Victim: Fidelity Security Group (cmdorganization)2026-06-28
cmdorganizationransomwareUnknown
Victima de ransomware reportada en el dashboard de cmdorganization.
Ido Cohen: The attackers never rest... and neither do we. Meet RedAct, a newly tracked ransomware group. The group has already published 2 victims and states that it is driven purely by financial gain—not politics or hacktivism. According to its public message, organizations that refuse to negotiate or fail to meet ransom demands should expect their stolen data to be published. Another emerging threat worth keeping on your radar.2026-06-28
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ransomware Monitor: Actor: #Qilin Victim: TRANSCORE Date: 2026-06-29 02:30:45 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#Qilin” Ransomware group has added TRANSCORE to its victims.2026-06-28
TMRansomMonransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Ransomware Monitor: Actor: #Qilin Victim: 1-800-DENTIST Date: 2026-06-29 02:30:48 UTC+3 According to #DarkWeb #Ransomware activity detected by the ThreatMon Threat Intelligence Team. The “#Qilin” Ransomware group has added 1-800-DENTIST to its victims.2026-06-28
TMRansomMonransomwareUnknown
Ransomware monitoring feed tracking new victim disclosures, data leaks and group activity.
Dark Web Informer: RT by @DarkWebInformer: ‼ CVE-2026-48907: Joomla! JCE extension 2.9.99.5 - unauthenticated Remote Code Execution Video Credit: @0xgh057r3c0n2026-06-28
DarkWebInformervulnerabilityUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: I haven't posted many Ransomware free posts on the website in quite some time... that should change this week. I wanted to settle on a template that works better than the threat alert one I'm using. Nothing else changes in general... socials still get all the normal posts.2026-06-28
DarkWebInformerransomwareUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: ‼ 1-800-DENTIST has been claimed a victim to Qilin Ransomware2026-06-28
DarkWebInformerransomwareUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Ugh, you may want to fix your auto posts mate.2026-06-28
DarkWebInformercampaignUnited States
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Amigo Tech patient dataset claim posted on a forum Amigo Tech is a Brazilian healthtech company connected to healthcare scheduling and patient management services. A forum user claims a partial breach tied to Amigo Tech, allegedly containing 121,678 patient records from March 2026.2026-06-28
DarkWebInformerbreachUnited States
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: ‼ New Ransomware Group: SETTRA htttp://settra5ldqwgtw5q7z5awbsvlksakyfojuc5slgrz5lvapune4fantqd[.]onion2026-06-28
DarkWebInformerransomwareUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Priorities: save the codebase, then yourself.2026-06-28
DarkWebInformercampaignUnknown
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Why would a Ransomware affiliate to well known groups use the terminology "pro hacker?" Ransomware recruitment solicitation posted on a forum A Dread user is seeking a “pro hacker” for a project they claim could generate millions. The user claims affiliation with ransomware-related structures and appears to be looking for help compromising or gaining control of server/admin access for a small team.2026-06-28
DarkWebInformerransomwareFrance
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: VRI Portal de Conteúdo dataset claim posted on a forum VRI Portal de Conteúdo is a Brazilian content portal focused on technical material in accounting, corporate, labor, and tax law areas. A forum user claims a dataset tied to VRI Portal de Conteúdo was exposed, allegedly containing 40K rows.2026-06-28
DarkWebInformerbreachBrazil
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Dark Web Informer: Government of Colima e-signature system compromise claim posted on a forum ACTIVA appears to be tied to the advanced electronic signature system used by the Government of the State of Colima, Mexico. A forum user claims they gained administrator access to the ACTIVA Firma portal and allegedly deleted users from the system, leaving only an administrator account under their control.2026-06-28
DarkWebInformercampaignMexico
Dark web monitoring and threat intelligence feed on ransomware groups and data leak sites.
Daily Dark Web: Major International Anti-Piracy Operation Seizes Pirate Streaming Infrastructure Law enforcement agencies from multiple countries have seized domains and infrastructure associated with large-scale piracy services as part of **Operation Offside**. * The seizure banner identifies participation from agencies including: * U.S.2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Is this accurate?2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Pinned: New Linux "pedit COW" Privilege Escalation Exploit Published Security researcher Massimiliano Oldani has released a public proof-of-concept (PoC) exploit, **packet_edit_meme**, for the Linux kernel vulnerability **CVE-2026-46331**, nicknamed **pedit COW**. * The flaw resides in Linux's **net/sched act_pedit** traffic control subsystem and allows an unprivileged local user to escalate privileges to **root** by corrupting shared page-cache memory.2026-06-28
DailyDarkWebvulnerabilityUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: What do you think?2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Don't believe everything you see lurking in the viral corners of the web. #DailyDarkWeb #ViralHoax #CGI #Debunked #Physics2026-06-28
DailyDarkWebcampaignUnknown
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Clearcover Customer Data Allegedly Offered for Sale A threat actor claims to be selling a database allegedly belonging to U.S. auto insurer Clearcover. * According to the forum post, the dataset is dated **25 June 2026** and allegedly contains **448,603** records.2026-06-28
DailyDarkWebbreachUnknownT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Alleged Compromise of Colima State Government Electronic Signature System A threat actor claims to have compromised the Advanced Electronic Signature (Firma Electrónica Avanzada) platform used by the Government of the State of Colima, Mexico. * According to the forum post, the actor alleges they: * Gained administrative access to the portal. * Deleted all user accounts except a single administrator account. * Retained control of the remaining administrative account.2026-06-28
DailyDarkWebcampaignMexico
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: French Municipal Police Data Allegedly Leaked A threat actor claims to have leaked approximately 4,900 "mains courantes" (police incident reports/logs) belonging to the Municipal Police of Joinville-le-Pont, France. * According to the listing, the actor states the dataset was personally extracted and is offering access through a paid forum.2026-06-28
DailyDarkWebcampaignFrance
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Call of Duty: Mobile Internal Offsets Allegedly Released A forum user has shared what they claim is an internal `offsets dump.cs` file for the global version of Call of Duty: Mobile (package: `com.activision.callofduty.shooter`). The post includes a public download link and states the file will be reposted if the original link becomes unavailable.2026-06-28
DailyDarkWebbreachUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: Croatian Student Database Allegedly Shared on Dark Web Forum A threat actor has published what they claim is a database containing approximately 954,000 records related to students from Croatian primary and secondary schools.2026-06-28
DailyDarkWebbreachCroatiaT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Daily Dark Web: French Hospital Patient Database Allegedly Repackaged and Shared A threat actor has published what they claim is a reformatted dataset originating from the 2024 Blackout ransomware leak targeting Centre Hospitalier d'Armentières in France. According to the post, the dataset contains information on approximately 203,928 patients, covering records from 2004 through March 2018.2026-06-28
DailyDarkWebransomwareFranceT1566
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Hackmanac: #PollResults Turns out what worries you most for H2 2026 is 𝐒𝐮𝐩𝐩𝐥𝐲 𝐂𝐡𝐚𝐢𝐧 𝐚𝐭𝐭𝐚𝐜𝐤𝐬 (𝟑𝟒%). Thanks to everyone who voted and see you at next #MondayPoll!2026-06-28
H4ckmanacransomwareUnknownT1566
Threat intelligence and cyber alert feed covering data breaches, ransomware incidents and vulnerability disclosures.
straightperformance.de2026-06-28
unsaferansomwareGermany
El 28 de junio de 2026 se reportó un incidente de ransomware afectando a la organización straightperformance.de, cuya pérdida económica fue estimada en 2 millones de dólares. El ataque fue a...
Ido Cohen: New Ransomware Group: Settra Settra has entered the ransomware landscape with 10+ published victims already listed on its leak site. Unlike groups that attempt to justify their actions, Settra openly states its motivation is simple: money. The group claims it does not target specific countries or industries—it targets organizations with exploitable security weaknesses.2026-06-27
ido_cohen2ransomwareUnknownT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
MalwareHunterTeam: RT by @malwrhunterteam: This is some kind of IT security related recruiting ad from the University of Criminal Investigation and Police Studies of Serbia... What are they "analysing"? Looks top or something like that... ‍2026-06-27
malwrhunterteamcampaignSerbia
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
MalwareHunterTeam: Image2026-06-27
malwrhunterteamcampaignUnknown
Malware samples, IOCs and indicators of compromise distributed by the MalwareHunterTeam research group.
Ransomware Victim: callhorton.com (incransom)2026-06-26
incransomransomwareUnknown
Victima de ransomware reportada en el dashboard de incransom.