Introduction
KelvinSecurity is a hacker group that has been active since at least 2015. They are known for their hacktivist and black hat activities, targeting public and private organizations globally. The group sells and leaks databases, documents, and access belonging to their victims, often on the dark web or their own platforms. They have been involved in attacks against various sectors, including telecommunications, political parties, and healthcare.
Activities and Tactics
Country of Origin: 🏳️ Spain
Notable Campaigns
Information pending cataloguing.
Tactics, Techniques, and Procedures (TTPs)
Information pending cataloguing.
Notable Indicators of Compromise (IOCs)
No curated IOCs are currently published for this actor. This section will be updated when stable, attributable indicators are available.
Malware and Tools
- BlackEnergy
- BLACKCOFFEE
- Blackshades
- BlackNix
- Dark DDoSeR
- BlackHole
Attribution and Evidence
Country of Origin: Spain Additional attribution information pending cataloguing.
References
References pending cataloguing.