Threats
Threat actors, malware and ransomware groups in the cybersecurity news, with their aliases, their MITRE ATT&CK techniques and Sigma rules to detect them.
Most active · last 4 weeks
- ShinyHuntersActor · 10 stories
- ClopRansomware · 3 stories
- JadePufferActor · 2 stories
- Mini Shai-HuludMalware · 2 stories
- GhostEmperorActor · 2 stories
- TeamPCPActor · 1 stories
- CallistoActor · 1 stories
- WatchdogActor · 1 stories
- SectopRATMalware · 1 stories
- BifrostMalware · 1 stories
- Shai-HuludMalware · 1 stories
- Sea TurtleActor · 1 stories
- SparrowDoorMalware · 1 stories
- SandwormActor · 1 stories
- CyclopsBlinkMalware · 1 stories
New on Jábega · 14 days
- CallistoActor · since 29 Sep 2026
- JadePufferActor · since 28 Sep 2026
- WatchdogActor · since 28 Sep 2026
- Mini Shai-HuludMalware · since 25 Sep 2026
- SectopRATMalware · since 24 Sep 2026
- BifrostMalware · since 22 Sep 2026
- Shai-HuludMalware · since 22 Sep 2026
- ShinyHuntersActor · since 21 Sep 2026
- ClopRansomware · since 21 Sep 2026
- Sea TurtleActor · since 18 Sep 2026
- GhostEmperorActor · since 17 Sep 2026
- SparrowDoorMalware · since 17 Sep 2026
Most common techniques this month
T1105Ingress Tool Transfer 7 threatsT1036.005Match Legitimate Resource Name or Location 6 threatsT1078Valid Accounts 6 threatsT1190Exploit Public-Facing Application 6 threatsT1059.007JavaScript 5 threatsT1082System Information Discovery 5 threatsT1083File and Directory Discovery 5 threatsT1485Data Destruction 5 threatsT1583.001Domains 5 threatsT1588.002Tool 5 threats
Detected automatically in the news using MISP galaxy aliases. Relationships come from co-occurrence in the news, not attribution.