Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Trisec

Trisec is a Tunisian-origin ransomware group that emerged in February 2024, claiming affiliation with the Tunisian government and operating as both a financially motivated and state-sponsored mercenary group, exclusively recruiting Tunisian members and reporting nine victims in the first half of 2024.

Victims
3
 
First Discovered
2024-02-16
victim
Last Discovered
2024-02-19
victim
Inactive Since
2yrs
more than
Avg Delay
N/A
attack→claim
Infostealer
33.3%
victims with domain
Countries
3
hit
View Victims on World Map View Group Statistics

Known Locations (2)
Favicon Title Type Available Last Visit Server Info FQDN
favicon Index of / No 2026-04-28T07:22:00 orfc3joknhrzscdbuxajypgrvlcawtuagbj7f44ugbosuvavg3dc3zid.onion
favicon No 2026-05-27T10:44:25 pkk4gbz7lsbgeja6s6iwsan2ce364sqioici65swwt65uhicke65uyid.onion

Target
Top 5 Activity Sectors
  • Technology 1
  • Healthcare 1
  • Professional Services 1
Top 5 Countries
  • IT flag Italy 1
  • SE flag Sweden 1
  • IE flag Ireland 1

Heatmap

YARA Rules (1)

Victims (3)
Logo
Discovered: 2024-02-19 (2y ago)
No description available
Logo
Discovered: 2024-02-19 (2y ago)
No description available
Logo
Discovered: 2024-02-16 (2y ago)
No description available