DragonForce Threat Actor Profile
DragonForce is a cyber threat group that has rapidly evolved from hacktivist beginnings into a prolific ransomware operation.
SOC status:Duty analyst on shift
Topic
44 articles tagged Threat actor profile.
DragonForce is a cyber threat group that has rapidly evolved from hacktivist beginnings into a prolific ransomware operation.
A threat profile of XakNet Team, a pro-Russian hacktivist group engaged in disinformation and cyber attacks against Ukrainian and NATO-aligned entities, with strong propaganda links and a focus on psychological impact.
A threat profile of UserSec Collective, a pro-Russian hacktivist group known for DDoS attacks, Telegram-based propaganda, and politically motivated disruptions targeting NATO-aligned countries and public services.
A threat profile of Trigona, a technically sophisticated ransomware group known for its rapid evolution, database-targeted encryption, and opportunistic double extortion tactics.
A threat profile of TA406 (Phosphorus), an Iranian state-aligned threat group specialising in spear-phishing, credential harvesting, and long-term espionage against government, defence, and academic institutions.
A threat profile of Silent Ransom (Silk Typhoon), a Chinese threat group using stealthy techniques to conduct intrusions, espionage, and extortion without deploying traditional ransomware payloads.
A threat profile of SiegedSec, a politically motivated hacktivist group known for disruptive cyber attacks, data leaks, and ideological campaigns targeting government, healthcare, and corporate entities.
A threat profile of Scattered Spider (Octo Tempest), a financially motivated threat actor known for advanced social engineering, SIM swapping, and ransomware deployment against major enterprises.
A threat profile of Sarcoma, an emerging ransomware group using double extortion and opportunistic targeting, linked to legacy industrial malware infrastructure.
A threat profile of Sandworm, a destructive Russian GRU-linked cyber group responsible for attacks on Ukraine’s power grid, the NotPetya worm, and persistent campaigns targeting critical infrastructure across Europe.
A threat profile of Royal, a sophisticated ransomware group targeting critical infrastructure and enterprises with double extortion tactics, custom tooling, and high-pressure ransom negotiations.
A detailed threat profile of Rhysida, a politically ambiguous ransomware group known for public sector targeting, double extortion, and its highly visible dark web leak site.