Uptime Hamster: 21d 6h 16mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza babyduck

babyduck

2 incidentes 2 paises 0 sectores threat-actor RU Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
BabyDuck is a nascent ransomware group that emerged around September 2021. This group is distinct from the well-known Babuk group, though its ransomware strain is based on Babuk ransomware. BabyDuck focuses on financial gain through ransomware deployments and employs double extortion tactics. It has gained attention for its aggressive expansion, rapid attack cycles, and the effective use of encryption algorithms and data leak threats.

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: babyduck
DLS / onionofflinebabydovegkmhbontykziyq7qivwzy33mu4ukqefe4mqpiiwd3wibnjqd.onionCTI.FYI
Tecnicas MITRE
T1566.001, T1070.004, T1486, T1027
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United Kingdom (1) United States (1)

Paises objetivo (OSINT)

United Arab EmiratesAustraliaBrazilCanadaSwitzerlandChileChinaColombiaGermanySpain

Sectores objetivo (OSINT)

Construction of BuildingsFood ManufacturingSoftware PublishersReal EstateHospitalsEnterprises & HoldingAccommodationAir TransportationManufacturingConstruction

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com