🏹 cipherforce — Ransomware
CipherForce is a newly emerged ransomware group first detected in early 2026, operating a dark web leak site and targeting technology, business services, and logistics companies across the US, China, Vietnam, India, and UAE, with at least 6 claimed victims.
Classification
Ransomware
Leak-site victims
6
Ransomware.live
Associated IoCs
0
local intel
MITRE techniques
—
ATT&CK
Tracked
Yes
Ransomware.live
🔥 Leak-Site Victims (6)
| Victim | Country | Published | Domain |
|---|---|---|---|
| Accuick | US | 2026-02-23T19:01:37.294833+00:00 | accuick.com |
| Zip24 - ShipOx | AE | 2026-02-23T13:25:48.676864+00:00 | shipox.com |
| FindNear | VN | 2026-02-23T13:25:32.878333+00:00 | findnear.vn |
| tektreeinc.com | IN | 2026-02-23T13:25:16.868216+00:00 | tektreeinc.com |
| hiringsteps.com | US | 2026-02-23T13:24:40.051002+00:00 | hiringsteps.com |
| Biaodianyun Group Ltd | CN | 2026-02-23T13:24:02.050923+00:00 | — |
Source: Ransomware.live leak-site monitoring (cached, offline-safe).
🏹 Campaigns & malware
🧩 Advanced Capabilities
Live group profile & victims via Ransomware.live; ATT&CK technique hints are a static reference for well-known groups. All network calls cached & offline-safe.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron