Cyble Vision Alerts Darkweb Ransomware Leak

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


A ransomware threat actor has posted victim data on the dark web. This alert includes leaked documents, threat actor name, victim organization, timestamps, and extracted text content for SOC triage.

Attribute Value
Type Analytic Rule
Solution Cyble Vision
ID 6deaf986-a25b-47b4-afbe-667901aa313b
Severity Low
Status Available
Kind Scheduled
Tactics Impact, Exfiltration, Reconnaissance
Techniques T1486, T1657
Required Connectors CybleVisionAlerts
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
CybleVisionAlerts_CL ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules · Back to Cyble Vision