Ransomware Intelligence

Real-time tracking of 40+ active ransomware operators. Infrastructure mapping, IOC correlation, victim pattern analysis, and predictive targeting β€” before they hit your sector.

Tracked Operators

Continuously ingested from leak sites, OSINT feeds, law enforcement takedown data, and infrastructure scanning. Every IOC mapped to the graph.

LockBit 3.0

RaaS β€’ Double Extortion β€’ StealBit
healthcaremanufacturingfinance

BlackCat / ALPHV

Rust-based β€’ Triple Extortion β€’ Sphynx
critical infralegalenergy

Cl0p

Zero-day Exploiter β€’ MOVEit β€’ GoAnywhere
supply chainfile transfermass exploit

Black Basta

Conti Successor β€’ QakBot β€’ SystemBC
enterpriseAD abuselateral

Akira

VPN Targeting β€’ VMware β€’ Cisco ASA
SMBVPN exploiteducation

Play

ProxyNotShell β€’ FortiOS β€’ No Leak Site
LATAMgovernmenttelecom

Royal / BlackSuit

Callback Phishing β€’ BatLoader β€’ Rebrand
healthcareeducationIT

Rhysida

Government Focus β€’ Vice Society Links
governmenthealthcaremilitary

What Signal Tracks

Is that hash ransomware?

Paste any IP, domain, SHA256, or CVE. Instant lookup against our graph β€” no signup, no paywall.

Free Threat Check β†’

Related Intelligence