Ransomware Intelligence

securotrop

Ransomware group profile

30Victims
51Impact score

Description

Securotrop is a ransomware group that emerged in March 2026, evolving from the Qilin ransomware gang. They primarily engage in financial extortion using a double-extortion model that includes data exfiltration and threatening to publish stolen data if ransoms are not paid.

Key insights

  • Utilizes a double-extortion model involving data exfiltration and encryption of victim systems.
  • Threatens to publish sensitive client and employee information on a leak site.
  • Can exfiltrate large volumes of data, ranging from hundreds of gigabytes to over two terabytes.
  • Targets diverse sectors and employs effective compromise vectors for breaches.
  • Motivated primarily by financial gain through extortion.

Threat Level & Status Breakdown

For securotrop · Based on incidents in selected period

2.3threat level
Aggressiveness6/ 10
Lethality0/ 10
Criticality0.6/ 10

Status Breakdown

Claimed100.0%30
First seenJun 2025
Last seenJun 2026
Avg ransom
Payment rate
Statusactive
Sophistication0
Last updatedJun 18, 2026

Recent activity

Monthly attack count for securotrop in the selected period

30Total attacks
5peak in Oct
2.5avg / month
JunJulAugSepOctNovDecJanFebAprMayJun02468

Intelligence

IOCs, YARA/Sigma rules, and related families for securotrop

  1. 94f73b5dc06ba6705fcef3e759413a747049c2949a0c2e44afc03b2f9989cf73
  2. c3804d1329b55a37bfa2f835e1e9bbc7bdb2b260f8e3627c06e02c9f52685d44
View full IOC feed500 total

TTPs & Attack Vectors

Tools, initial access, and MITRE ATT&CK techniques for securotrop

Other

T1486

T1486

T1490

T1490

T1041

T1041

T1562

T1562

T1078

T1078

T1021

T1021

T1021.001

T1021.001

T1561

T1561

T1059

T1059

T1547

T1547

Victims(52)

CompanyDomainCountryIndustryStatusDiscovered
Charisma Mediacharismamedia.comUS United StatesTechnology
Claimed
6 days ago
Kriete Truck Centerskrietetrucks.comUS United StatesTransportation
Claimed
14 days ago
Thompson Builders Corporationtbcorp.comUS United StatesOther
Claimed
about 2 months ago
Synergy EngineeringUS United StatesProfessional Services
Claimed
about 2 months ago
Tax Prep and MoreUS United StatesFinancial Services
Claimed
2 months ago
Jones Haber LawUS United StatesProfessional Services
Claimed
2 months ago
Universal Mailing Serviceumsmail.comUS United StatesManufacturing
Claimed
4 months ago
Marshal Renee Constructionmarshalrenee.comUS United StatesManufacturing
Claimed
4 months ago
Living Realtylivingrealty.comCA CanadaManufacturing
Claimed
5 months ago
Spartan Carbidespartancarbide.comUS United StatesManufacturing
Claimed
6 months ago
Cadman Power Equipmentcadmanpower.comCA CanadaManufacturing
Claimed
6 months ago
Delta Coast Consultantsdeltacoastllc.comUS United StatesManufacturing
Claimed
7 months ago
Mister Gunsmisterguns.comUS United StatesManufacturing
Claimed
7 months ago
Pocatello Ready Mixhorrocksreadymix.comUS United StatesManufacturing
Claimed
7 months ago
Superior Air Partssuperiorairparts.comUS United StatesManufacturing
Claimed
8 months ago
Churchill Claims Serviceschurchill-claims.comUS United StatesManufacturing
Claimed
8 months ago
Mill Bay Marine Groupmbmg.caCA CanadaManufacturing
Claimed
9 months ago
Structural Component Systemsscstruss.comUS United StatesManufacturing
Claimed
9 months ago
Allardyce Bower Consultingabcengineering.caCA CanadaManufacturing
Claimed
9 months ago
Weschler's Auctioneersweschlers.comUS United StatesManufacturing
Claimed
9 months ago

Page 1 of 3

Affected countries(6)

Countries where this group has been reported to target or leak victims.