Uptime Hamster: 27d 17h 15mDeploy: 3 Aug 2026 06:56Updated: 2026-07-21
Logo del actor de amenaza secp0

secp0

2 incidentes 1 paises 1 sectores threat-actor Ultimo: 2026-06-29
Ver en IntelTracker → APTTrail →
secp0 is a ransomware group that first emerged in February 2025, operating as a Ransomware-as-a-Service (RaaS) platform. Initially misunderstood for a novel extortion model involving vulnerability disclosure, the group quickly clarified its operations as conventional double-extortion ransomware. Their primary motivation is financial gain, achieved by encrypting victim data and threatening public disclosure on their dedicated leak sites. A distinguishing characteristic of secp0 is its focus on targeting Linux systems and ESXi environments, utilizing custom ELF binaries for its ransomware operations. The group paused publications in May 2025 to develop a software solution, believed to be the World Leaks platform, aimed at streamlining the publication of large datasets.

Actores similares

SECP0 Teamthreat-actor · 0

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: secp0
DLS / oniononlinesecponewsxgrlnirowclps2kllzaotaf5w2bsvktdnz4qhjr2jnwvvyd.onionCTI.FYI
DLS / leak siteofflinesecp0-leaks.comCTI.FYI
Webofflinesecp0-news.wsCTI.FYI
Webofflinesecp0-support.cfdCTI.FYI
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (OSINT)

AustraliaBrazilCanadaGermanySpainFranceUnited KingdomIndiaItalyJapan

Sectores atacados

Software (1)

Sectores objetivo (OSINT)

Other Information ServicesSoftware PublishersEnterprises & HoldingManufacturingConstructionPublic AdministrationData Processing ServicesSpace & DefensePaper ManufacturingAutomotive

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com