Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Auditteam

| Active

AuditTeam is a small ransomware group with approximately 5 known victims, primarily targeting organizations in East and Southeast Asia across technology and manufacturing sectors, operating a data leak site consistent with double-extortion methodology.

Victims
6
 
First Discovered
2026-04-08
victim
Last Discovered
2026-05-10
victim
Inactive Since
4
days
Avg Delay
40
days
Infostealer
50.0%
victims with domain
Countries
6
hit
View Victims on World Map View Group Statistics
Attack Velocity — Last 12 months
-67% vs last month

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon /// DATA EXPOSURE TERMINAL /// Yes 2026-05-14T14:38:06 NGINX nginx 1.18.0 6tdqqaxftvradka5d2frzgwixis7fmro7rfh4ettzcx7jfapkebe6jad.onion

Target
Top 5 Activity Sectors
  • Transportation/Logistics 1
  • Manufacturing 1
  • Technology 1
Top 5 Countries
  • SN flag Senegal 1
  • PH flag Philippines 1
  • KR flag Korea, Republic of 1
  • HK flag Hong Kong 1
  • TH flag Thailand 1

Heatmap

Ransom Notes (1)

YARA Rules (1)

Victims (6)
Logo
Discovered: 2026-05-10 (4d ago)
No description available
Logo
Discovered: 2026-04-08 (1mo ago)  ·  Attack est.: 2026-02-21
Kawasaki Motors Philippines Corporation (KMPC), located in Muntinlupa, Metro Manila, is a leading ma…
Logo
Discovered: 2026-04-08 (1mo ago)  ·  Attack est.: 2026-03-05
Joycity is a prominent South Korean game developer and publisher founded in 1994 and listed on the K…
Logo
Discovered: 2026-04-08 (1mo ago)
[AI generated] N/A…
Logo
Discovered: 2026-04-08 (1mo ago)
[AI generated] N/A…
Logo
Discovered: 2026-04-08 (1mo ago)
[AI generated] N/A…