Skip to content

sicarii

Inactive

0 tracked victims · First seen Jan 5, 2026 · Last seen Jan 5, 2026

About

Aggregated threat-intel description

Sicarii is a pro-Israeli/Jewish-branded ransomware-as-a-service operation that emerged in late 2025, explicitly targeting Arab and Muslim-majority organizations while avoiding Israeli systems, exploiting exposed RDP services and Fortinet devices, with its admin later instructing operators to migrate to the BQTLock platform.

Recent victims

View all →
No recent victims.

All ransomware groups · Dark web intelligence