BlackSuit (Ransomware Group) – Threat Actor
The BlackSuit ransomware operation emerged in early April/May of 2023. The group is a multi-pronged extortion outfit, encrypting and exfiltrating...
A threat actor in cybersecurity is any individual, group, or organization that intentionally exploits vulnerabilities, conducts malicious activities, or engages in cyberattacks with the goal of compromising information systems, networks, or data.
The BlackSuit ransomware operation emerged in early April/May of 2023. The group is a multi-pronged extortion outfit, encrypting and exfiltrating...
Cisco Talos recently uncovered a new threat actor known as "CoralRaider," suspected to originate from Vietnam and motivated by financial...
Earth Freybug is a cyberthreat group that has been active since at least 2012 that focuses on espionage and financially...
Agenda is an emerging ransomware family, that has recently been targeting critical sectors such as healthcare and education industries.
MuddyWater is a cyber espionage group assessed to be a subordinate element within Iran's Ministry of Intelligence and Security (MOIS).
Andariel is a North Korean state-sponsored threat group that has primarily focused its operations against South Korean government agencies.
ShadowSyndicate is an opportunistic, financially-motivated threat actor, active since July 2022, who was linked with various ransomware strains such as...
Magnet Goblin is a financially motivated threat actor who quickly leverages 1-day vulnerabilities, often in edge devices, after their disclosure.
The group drops an eponymous ransomware via phishing attacks and Cobalt Strike to breach targets’ networks and deploy their payloads.