Dragonforce
Also known as Hackledorb
Reports
84
First seen
Sep 8
Last seen
Jun 27
Motivation
financial, extortion, financial extortion
Targeting
Sectors
manufacturing ×12professional services ×10other ×6technology ×6hospitality ×5healthcare ×4retail ecommerce ×3financial services ×3
Victim regions
United States ×17Canada ×4United Kingdom ×4India ×3United Arab Emirates ×3Netherlands ×3Italy ×2Hong Kong SAR China ×2
Top ATT&CK techniques
T1562.001 Impair Defenses: Disable or Modify Tools ×5T1486 Data Encrypted for Impact ×5T1190 Exploit Public-Facing Application ×4T1566 Phishing ×4T1021 Remote Services ×3T1195 Supply Chain Compromise ×3T1068 Exploitation for Privilege Escalation ×3T1133 External Remote Services ×2T1055 Process Injection ×2T1003 OS Credential Dumping ×2T1059.001 Command and Scripting Interpreter: PowerShell ×2T1547 Boot or Logon Autostart Execution ×2
Indicators
domain ×160filename ×102ip_v4 ×61hash_md5 ×36hash_sha1 ×15hash_sha256 ×14cve ×10email ×4url ×2registry_key ×1bitcoin_address ×1
Indicator values are available on Pro and via the API.
Associated CVEs
Recent reports
High