Uptime Hamster: 21d 9h 20mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza global

global

2 incidentes 2 paises 2 sectores threat-actor Ultimo: 2026-06-29
Aliases: Umbrella Revolution, Spear-phishing, técnicas como el uso de "web bugs", FlowerLady, POISON IVY, PlugX, entre otros, Southeast Asia, para detectar señales de ataque potencial, APT38, ElectricFish, BlueNoroff, TA444, ofensivas en el ámbito digital, Fraternal Jackal, Ababil, ha sido identificado con la plataforma pastebin, "Olympic Games"
Ver en IntelTracker → APTTrail →

Aliases del actor

Umbrella RevolutionSpear-phishingtécnicas como el uso de "web bugs"FlowerLadyPOISON IVYPlugXentre otrosSoutheast Asiapara detectar señales de ataque potencialAPT38ElectricFishBlueNoroffTA444ofensivas en el ámbito digitalFraternal JackalAbabilha sido identificado con la plataforma pastebin"Olympic Games""Developed Panda Zeus"SIG25 (NSA)aunque no hay confirmación directaEmdiviCloudy Omega indica una estrategia de desinformaciónlo que puede dificultar la detecciónel rastreosecurelistOperation Ghoulingenieríamanufactura en más de 30 paíseswwwTG-0110APT3

Actores similares

Pirate Pandaapt · 0Wet Pandaapt · 0Poisonous Pandaapt · 0Eloquent Pandaapt · 0POISONUS PANDAapt · 0Operation Olympic Gamesapt · 0Stone Pandaapt · 0Vicious Pandaapt · 0Pitty Pandaapt · 0Hurricane Pandaapt · 0

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteunknownduckduckgo.comAxiom GlobalNEW
DLS / leak siteunknownduckduckgo.comAxiom GlobalNEW
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / onionunknownom6q4a6cyipxvt7ioudxt24cw4oqu4yodmqzl25mqd2hgllymrgu4aqd.onionESMS Global Limited
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: global
Forounknownnitter.netDaily Dark Web: Call of Duty: Mobile Internal Offsets Allegedly Released A forum user has shared what they claim is an internal `offsets dump.cs` file for the global version of Call of Duty: Mobile (package: `com.activision.callofduty.shooter`). The post includes a public download link and states the file will be reposted if the original link becomes unavailable.
Forounknownx.comDaily Dark Web: Call of Duty: Mobile Internal Offsets Allegedly Released A forum user has shared what they claim is an internal `offsets dump.cs` file for the global version of Call of Duty: Mobile (package: `com.activision.callofduty.shooter`). The post includes a public download link and states the file will be reposted if the original link becomes unavailable.
DLS / leak siteunknownnitter.netIdo Cohen: Tracking the pulse of ransomware in 2026—these are the groups leading the global attack landscape right now: Qilin – 665 attacks The Gentleman – 453 attacks Akira – 290 attacks DragonForce – 245 attacks INC – 239 attacks Lockbit – 199 attacks Play – 154 attacks CLOP – 127 attacks NightSpire – 115 attacks CoinBase Cartel – 97 attacks Stay ahead of ransomware threats.
X/Twitterunknownx.comIdo Cohen: We continue to monitor additional sources in the darknet. Here are some of the events that were added to our platform in the last week. 1 A major breach exposed over 500GB of sensitive personal information from job seekers, posing a high risk of identity theft and fraud. 2 Remote access to POS systems is being sold, threatening financial data and sensitive customer information across large retail businesses globally.
DLS / leak siteunknownnitter.netGroup-IB Threat Intelligence: Group-IB telemetry has identified over 62,000 compromised endpoints across more than 160 countries infected with #MilleniumRAT (4.x). The infection velocity is alarming, with over 39,000 of these detections occurring in Q1 2026 alone, representing 64% of all infections. This demonstrates a rapidly accelerating global campaign.
X/Twitterunknownx.comGroup-IB Threat Intelligence: Victimology analysis shows overlapping global targeting across both campaigns. Reward Points phishing primarily targets #financial services and telecom users across #APAC, while Failed Parcel Delivery campaigns focus on logistics entities across Europe, APAC, and the US. Despite sector-specific lures, the geographic distribution and brand impersonation patterns indicate coordinated deployment within the same smishing infrastructure. #ThreatIntel
DLS / leak siteunknownnitter.netIdo Cohen: We continue to monitor additional sources in the darknet. Here are some of the events that were added to our platform in the last week. 1 A major breach exposed over 500GB of sensitive personal information from job seekers, posing a high risk of identity theft and fraud. 2 Remote access to POS systems is being sold, threatening financial data and sensitive customer information across large retail businesses globally.
DLS / leak siteunknownduckduckgo.comALS Global
DLS / leak siteunknownduckduckgo.comALS Global
DLS / leak siteunknownnitter.netGroup-IB Threat Intelligence: Victimology analysis shows overlapping global targeting across both campaigns. Reward Points phishing primarily targets #financial services and telecom users across #APAC, while Failed Parcel Delivery campaigns focus on logistics entities across Europe, APAC, and the US. Despite sector-specific lures, the geographic distribution and brand impersonation patterns indicate coordinated deployment within the same smishing infrastructure. #ThreatIntel
DLS / leak siteunknownwww.breachsense.comocaglobal.com - Conti Data Breach
DLS / leak siteunknowngetbootstrap.comocaglobal.com - Conti Data Breach
Repositoriounknowngithub.comocaglobal.com - Conti Data Breach
DLS / onionofflinevg6xwkmfyirv3l6qtqus7jykcuvgx6imegb73hqny2avxccnmqt5m2id.onionCTI.FYI
DLS / onionofflinegdbkvfe6g3whrzkdlbytksygk45zwgmnzh5i2xmqyo3mrpipysjagqyd.onionCTI.FYI
DLS / onionunknownvg6xwkmfyirv3l6qtqus7jykcuvgx6imegb73hqny2avxccnmqt5m2id.onionmarktsec
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

Russia (1) United States (1)

Sectores atacados

Healthcare (1) Software (1)

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com