Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Sicarii

| Active

None

Victims
 

1

First Discovered
victim

2026-01-05

Last Discovered
victim

2026-01-05

Inactive Since
in days

29

Avg Delay
between attack and claim

N/A

Infostealer
for victim with domain

N/A

View Victims on World Map

View group statistics


Known Locations (3)
Favicon Title Type Available Last Visit Server Info FQDN
favicon 404 Not Found No 2026-02-03 03:01:00 sicari7zpu3mtxqggde7mu3ywppntdqg22arcukvlaihjbfcb2rnktid.onion
favicon 403 Forbidden No 2026-02-03 03:01:23 sicari7zpu3mtxqggde7mu3ywppntdqg22arcukvlaihjbfcb2rnktid.onion
favicon 404 Not Found No 2026-02-03 03:01:41 sicarilxx2br6esqnhad4w26bcgb5j2snbbnhyo4b6t7kby2oy4x3jad.onion

Target (Available)
Top 5 Activity Sectors
  • Manufacturing 1
Top 5 Countries
  • US flag United States 1

Heatmap (Available)

Ransom Notes (0)

No ransom notes available.


Tools Used (Not Available)

No tools used available.


Vulnerabilities Exploited (0)

No vulnerabilities exploited available.


TTPs Matrix (0)

No TTPs available.


Negotiation Chats (0)

No negotiation chats available.


YARA Rules (0)

No YARA rules available.


Indicators of Compromise (IoCs) (2)
PGP 1 TOX 1
Type IOC
pgp
-----BEGIN PGP PUBLIC KEY BLOCK-----
Comment: User ID: Sicarii <sic@ar.ii>
Comment: Valid from: 11/30/25 7:48 PM
Comment: Valid until: 11/30/28 12:00 PM
Comment: Type: 255-bit EdDSA (secret key available)
Comment: Usage: Signing, Encryption, Certifying User IDs
Comment: Fingerprint: 963B 6905 B58F 9673 A08F 9CDD 78DD 49C8 9B96 3C1D
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=2Z1x
-----END PGP PUBLIC KEY BLOCK-----
tox 2368C617830435DD74C41323BD684F04627A8047F92A885419E0191AC21F6D49733E4FF2C60E

Victims (1)
Logo
Triad Packaging Sicarii
Discovery Date: 2026-01-05
חברת Triad Packaging סבלה מהדלפת נתונים גדולה. 102 גיגה-בייט של נתונים רגישים נגנבו כולל מסמכים פנימ...
US