Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Hellcat

None

Victims
20
 
First Discovered
2024-10-25
victim
Last Discovered
2025-04-10
victim
Inactive Since
347
days
Avg Delay
4.5
days
Infostealer
75.0%
victims with domain

View Victims on World Map

View group statistics


Known Locations (7)
Favicon Title Type Available Last Visit Server Info FQDN
favicon DDoS Protection No 2025-06-24 19:30:09 hellcakbszllztlyqbjzwcbdhfrodx55wq77kmftp4bhnhsnn5r3odad.onion
favicon 404 Not Found No 2025-06-24 19:30:16 hellcakbszllztlyqbjzwcbdhfrodx55wq77kmftp4bhnhsnn5r3odad.onion
favicon HellCat - Blog No 2025-11-03 06:00:27 hellcatdcy653ma43t2ryf2ztw5yfanqsbfmapndbqvteh5itctoijyd.onion
favicon HellCat - Blog No 2025-11-03 05:02:19 hellcatdnrsu4i5uctbklunpfyv2ppiioh5sb3leu4dfgizinrve3gqd.onion
favicon HellCat - Blog No 2025-11-03 06:01:28 hellcatdohzngkuh7zruzhi2wojrawbnzbyzljtkw6iluv5ussfer4id.onion
favicon HellCat - Blog No 2025-11-03 05:31:20 hellcatdue7rasyoi4oh6t3fhra5bpcj5t6xmrm4vjicfqdvrl24ijid.onion
favicon None No 2026-03-23 07:00:28 hellcatj6xgvho4qxnr2nbzzthsqel577i5wvzcpfjgavbo3d5l657id.onion

Target (Available)
Top 5 Activity Sectors
  • Technology 8
  • Education 3
  • Government 2
  • Energy 1
  • Business Services 1
Top 5 Countries
  • US flag United States 6
  • CN flag China 2
  • IL flag Israel 1
  • FR flag France 1
  • JO flag Jordan 1

Heatmap (Available)

Ransom Notes (2)

Tools Used (Not Available)

No tools used available.


Vulnerabilities Exploited (0)

No vulnerabilities exploited available.


TTPs Matrix (0)

No TTPs available.


Negotiation Chats (0)

No negotiation chats available.


YARA Rules (0)

No YARA rules available.


Indicators of Compromise (IoCs) (0)

No IoCs available for this group.


Victims (20)
Logo
Discovered: 2025-04-10  ·  Attack est.: 2025-04-07
We have breached a U.S.-based financial services firm. 381GB of sensitive data has been secured. The…
Logo
Discovered: 2025-04-07
We have breached a U.S.-based financial services firm. 381GB of sensitive data has been secured. The…
Logo
Discovered: 2025-04-07
We have breached the internal systems of Guangzhou Shiyuan Electronic Technology, securing sensitive…
Logo
Discovered: 2025-04-05  ·  Attack est.: 2025-03-18
Jiraware <<3 !! We hold sensitive data from HighWire Press, a leading platform serving scholarly pub…
Logo
Discovered: 2025-04-05
Jiraware <<3 !! We have breached Racami’s internal systems. The data in our possession poses a serio…
Logo
Discovered: 2025-04-05
Jiraware <<3 !! We have breached Asseco’s internal systems, stealing sensitive files, communications…
Logo
Discovered: 2025-04-05
We have compromised the internal systems of LeoVegas AB. The data in our possession threatens their …
Logo
Discovered: 2025-03-29
We hold almost 70GB of sensitive data from Transsion, a leading mobile device provider with $8.6B in…
Logo
Discovered: 2025-03-25  ·  Attack est.: 2025-03-24
We hold sensitive files from Santillana, the largest business unit of Spain’s publicly traded Prisa …
Logo
Discovered: 2025-03-25  ·  Attack est.: 2025-03-24
We hold sensitive files from Omnitracs, a leading provider of fleet management and logistics soluti…
Logo
Discovered: 2025-03-17
We hold 19GB of sensitive files from Electronics For Imaging, Inc., including critical corporate dat…
Logo
Discovered: 2025-03-16  ·  Attack est.: 2025-03-15
44GB of sensitive data including internal reports, sales documents, confidential contracts, developm…
Logo
Discovered: 2025-02-28  ·  Attack est.: 2025-02-25
We have obtained over 330,000 records from OneDealer partners, including sales reports, leads, custo…
Logo
Discovered: 2024-12-26
We have successfully stolen over50 GBof data from Car Care Plan, including financial records with se…
Logo
Discovered: 2024-12-25
We have successfully stolen82 GBof data, including backups, from the e-Finance system of Blora Regen…
Logo
Discovered: 2024-12-25
We have successfully breached Pinger, obtaining 111 GB of sensitive data. This includes over 9 milli…
Logo
Discovered: 2024-11-04
We have released over 500,000 records from Tanzania’s College of Business Education, containing stud…
Logo
Discovered: 2024-11-04
We have successfully accessed and compromised a range of sensitive documents from Jordan's Ministry …
Logo
Discovered: 2024-11-04
[IA generated] Schneider Electric, based in France, is a global leader in energy management and auto…
Logo
Discovered: 2024-10-25
We have successfully compromised the Knesset's secure networks and extracted 64GB of sensitive data.…