Qilin Ransomware: Threat Actor Profile
Qilin has become one of the world's most active ransomware operations, targeting healthcare, government and major enterprises through a growing...
Qilin has become one of the world's most active ransomware operations, targeting healthcare, government and major enterprises through a growing...
Australian authorities charged 2 alleged TeamPCP participants over supply-chain attacks blamed for stealing 500,000 credentials from organizations worldwide.
A website claiming to represent LAPSUS$ has published a PGP-signed announcement stating the notorious cybercrime group has permanently ceased operations.
Court filings reveal how Microsoft telemetry, cloud records, and social media evidence were combined to identify an alleged Scattered Spider...
ShadowByt3$ claims it has ended operations following months of extortion campaigns, insider recruitment, and alleged attacks targeting organizations across multiple...
FulcrumSec is a financially motivated cybercriminal group active since 2025, known for large-scale data exfiltration and branded leak campaigns targeting...
Nasir Security is a pro-Iranian hacktivist group active since late 2025, targeting Middle Eastern government, aviation, and energy sectors with...
UNC4736 is a North Korean state-sponsored threat actor focused on cryptocurrency theft and DeFi attacks, known for sophisticated social engineering,...
Storm-1175, also known as Spearwing, is a China-linked financially motivated cybercriminal group active since 2023, deploying Medusa ransomware and exploiting...
TeamPCP is a financially motivated cybercrime group active since 2025, known for disrupting supply chains through attacks on developer tools,...