Actor Profile

🏹 0day Syndicate — Ransomware

Classification

Ransomware

Leak-site victims

5
Ransomware.live

Associated IoCs

0
local intel

MITRE techniques

ATT&CK

Tracked

Yes
Ransomware.live

🔥 Leak-Site Victims (5)

VictimCountryPublishedDomain
Braincell Braincell.sa rfcargo.braincell.solutions rf.braincell.solutions governata.com 2026-05-29T13:50:35.539879+00:00 braincell.sa
xgenize.com US 2026-05-28T09:05:24.825256+00:00 xgenize.com
gokids gokidspublishing.com dev.redpilotstudio.com gokidsmobile.com 2026-05-28T09:05:00.016659+00:00 gokids.kids
dxon.com.br BR 2026-05-28T09:04:35.858766+00:00 dxon.com.br
xl africa group GH 2026-05-28T09:04:10.540409+00:00 xlafricagroup.com

Source: Ransomware.live leak-site monitoring (cached, offline-safe).

📁 Case Management

+ New case from this

🏹 Add to case

Attach 0day Syndicate (Actor / APT) and pull all linked entities:

🧭 Intelligence disciplines

CYBINT →OSINT →HUMINT →GEOINT →
Live group profile & victims via Ransomware.live; ATT&CK technique hints are a static reference for well-known groups. All network calls cached & offline-safe.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php