🏹 TiMc — Ransomware
TiMc is a ransomware group that emerged in early 2026, claiming high-impact attacks against Spanish IT services leader Seidor (1 TB+ data) and oncology organization Oncologica (100 GB+), targeting Business Services, Healthcare, and IT sectors with a focus on Spanish-speaking and European targets.
Classification
Ransomware
Leak-site victims
3
Ransomware.live
Associated IoCs
0
local intel
MITRE techniques
—
ATT&CK
Tracked
Yes
Ransomware.live
🔥 Leak-Site Victims (3)
| Victim | Country | Published | Domain |
|---|---|---|---|
| oncologica | GB | 2026-04-09T15:17:28.249952+00:00 | www.oncologica.com |
| Seidor | ES | 2026-04-09T15:17:01.371976+00:00 | www.seidor.com |
| Debene S.A. | Página Principal | AR | 2026-04-09T15:16:35.371551+00:00 | debene.com |
Source: Ransomware.live leak-site monitoring (cached, offline-safe).
📁 Case Management
🏹 Campaigns & malware
🏹 Add to case
🧩 Advanced Capabilities
Live group profile & victims via Ransomware.live; ATT&CK technique hints are a static reference for well-known groups. All network calls cached & offline-safe.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron