Related Threat Clusters
-
Storm-0501 Cybercrime Group Targets Azure with Ransomware Tactics
Storm-0501, a financially motivated cybercrime group, has been active since 2021 and is known for conducting ransomware operations using various Ransomware-as-a-Service (RaaS) variants. They have recently expanded their…
2 articles · Updated August 17, 2026 -
ExfilSquad Targets Wesco in Major Data Theft Incident
On August 11, 2026, Wesco, a global supply chain company, confirmed a cybersecurity incident involving data theft by the group ExfilSquad. The group claimed to have stolen 2.6 million records from Wesco's cloud CRM…
13 articles · Updated August 12, 2026 -
ExfilSquad Targets 13 Organizations, Threatens Data Leak via Torrents
ExfilSquad, a newly identified cybercriminal group, has targeted 13 organizations across the U.S., UK, and Sweden, threatening to leak stolen data unless a ransom is paid. The group primarily exploits cloud portals for…
2 articles · Updated August 11, 2026 -
Akira Ransomware Uses Safe Mode to Evade EDR Detection
In early August 2026, an Akira ransomware affiliate executed an attack leveraging Safe Mode to evade endpoint detection and response (EDR) tools. The attack began with credential spraying against an exposed SonicWall…
11 articles · Updated August 12, 2026 -
Majority of Public Sector Cyberattacks in 2024 Driven by Hacktivist DDoS Operations
In 2024, nearly 60% of cyberattacks targeting public sector organizations were distributed denial-of-service (DDoS) attacks, primarily executed by hacktivist groups, according to a report by ENISA. While DDoS incidents…
2 articles · Updated November 7, 2025 -
Emergence of Vect RaaS Operation Targeting Organizations in Brazil and South Africa
The newly identified Vect ransomware-as-a-service (RaaS) operation has compromised organizations in Brazil and South Africa. Launched in December 2025, Vect employs C++-based malware utilizing the ChaCha20-Poly1305 AEAD…
2 articles · Updated February 5, 2026 -
Surge in DDoS Attacks Against EU Public Administration by Hacktivists
A report from ENISA reveals that public administrations in the EU are increasingly targeted by cyberattacks, primarily through distributed denial-of-service (DDoS) attacks led by hacktivist groups. In 2024, nearly 60%…
4 articles · Updated November 10, 2025
Recent Intelligence Reports
- Exfilsquad Targets New Victims Shares Data Via Torrents — www.resecurity.com · September 2, 2026
- Storm-0501 — attack.mitre.org · August 18, 2026
- MITRE ATT&CK T1688 — attack.mitre.org · August 12, 2026
- Researchers Warn of New “Vect” RaaS Variant — Infosecurity-Magazine · February 3, 2026
- Hacktivist — Infosecurity-Magazine · November 6, 2025