Common Information
Type Value
Value
ALPHV Ransomware Group
Category Actor
Type Threat-Actor
Misp Type Cluster
Description ALPHA SPIDER is a threat actor known for developing and operating the Alphv ransomware as a service. They have been observed using novel offensive techniques, such as exploiting software vulnerabilities and leveraging legitimate administration tools for malicious activities. ALPHA SPIDER affiliates have demonstrated persistence in exfiltrating data and have shown the ability to bypass security measures like DNS-based filtering and multifactor authentication. Despite lacking specific operational security measures, defenders have opportunities to detect and respond to ALPHA SPIDER's operations effectively.
Details Published Attributes CTI Title
Details Website 2023-05-02 0 NextGen Healthcare Cyber Attack Exposes Patient Data for Nearly 17 Days
Details Website 2023-04-26 1 AKPK Malaysia Data Breach: ALPHV Ransomware Group Gets Access to 1.5 Million Files
Details Website 2023-04-26 0 BERNINA International hacked: ALPHV Ransomware Group Strikes the Sewing Machine Manufacturer
Details Website 2023-04-24 0 ALPHV Claims the Alleged ECCI Ransomware Attack
Details Website 2023-04-18 0 Western Digital Ransomware Attack: Hackers Ain’t Happy, Here’s Why
Details Website 2023-04-17 0 Leadway Assurance Company Faces Data Breach By ALPHV Ransomware Group
Details Website 2023-04-16 5 NCR was the victim of BlackCat/ALPHV ransomware gang
Details Website 2023-03-21 0 Tuesday Morning Threat Report: Mar 21, 2023
Details Website 2023-03-16 1 Ransomware gang allegedly hacks Ring doorbells
Details Website 2023-03-01 0 Indian pharmaceutical giant warns of revenue loss, litigation after ransomware attack | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware – National Cyber Security Consulting
Details Website 2023-01-16 0 Cyber threats and the energy sector: an overview
Details Website 2023-01-10 40 Anomali Cyber Watch: Turla Re-Registered Andromeda Domains, SpyNote Is More Popular after the Source Code Publication, Typosquatted Site Used to Leak Company’s Data
Details Website 2022-09-07 1 Multiple ransomware data leak sites experience DDoS attacks, facing intermittent outages and connectivity issues