About
Aggregated threat-intel descriptionHellCat is a ransomware-as-a-service group that formed in Q4 2024 and quickly became notable for high-profile attacks against Schneider Electric, Telefónica, and Israel's Knesset, primarily gaining initial access via stolen Jira credentials harvested by infostealer malware, targeting critical infrastructure and government entities.
Sectors: Technology, Education, Government · Countries: US, CN, DE
Recent victims
View all →| Victim | Sector | Country | Posted | Status |
|---|---|---|---|---|
| Potomac Financial Services | Financial Services | US | Apr 10, 2025 | |
| P**o*** | Not Found | Apr 7, 2025 | ||
| CVTE | Technology | CN | Apr 7, 2025 | |
| HighWire Press | Technology | US | Apr 5, 2025 | |
| Racami | Technology | US | Apr 5, 2025 | |
| Asseco | Technology | PL | Apr 5, 2025 | |
| LeoVegas AB | Telecommunication | SE | Apr 5, 2025 | |
| Transsion Holdings | Technology | CN | Mar 29, 2025 | |
| Grupo Santillana | Education | ES | Mar 25, 2025 | |
| Omnitracs | Technology | US | Mar 25, 2025 | |
| Electronics For Imaging | Technology | US | Mar 17, 2025 | |
| Ascom Holding AG | Technology | CH | Mar 16, 2025 | |
| OneDealer | Not Found | DE | Feb 28, 2025 | |
| Car Care Plan - Turkey | Financial | TR | Dec 26, 2024 | |
| Sistem Informasi Pengelolaan Keuangan Daerah (SIPKD) | Government | ID | Dec 25, 2024 | |
| Pinger - USA | Business Services | US | Dec 25, 2024 | |
| College of Business - Tanzania | Education | TZ | Nov 4, 2024 | |
| Ministry of Education - Jordan | Education | JO | Nov 4, 2024 | |
| Schneider Electric - France | Energy | FR | Nov 4, 2024 | |
| The Knesset - Israel | Government | IL | Oct 25, 2024 |