Ransomware Intelligence

walocker

Ransomware group profile

16Victims
RussiaSource country
60Impact score

Description

Walocker is a financially motivated ransomware operation that began on June 10, 2025. The group employs a double extortion model, encrypting victim data and threatening to release sensitive information if ransom demands are not met.

Key insights

  • Utilizes a double extortion model involving data encryption and exfiltration.
  • Targets the financial services sector among others.
  • Threatens to publish stolen data on a dedicated leak site.
  • Specific initial access methods and tools are not well-documented.
  • Known to target entities in various countries, primarily Cambodia.

Threat Level & Status Breakdown

For walocker · Based on incidents in selected period

1.4threat level
Aggressiveness4/ 10
Lethality0/ 10
Criticality0/ 10

Status Breakdown

Claimed56.3%9
First seenJul 2025
Last seenDec 2025
Avg ransom
Payment rate
Statusactive
Sophistication0
Last updatedJun 18, 2026

Recent activity

Monthly attack count for walocker in the selected period

16Total attacks
7peak in Jul
5.3avg / month
↓ 4 vs first month
JulAugDec02468

Intelligence

IOCs, YARA/Sigma rules, and related families for walocker

  1. kawasa2qo7345dt7ogxmx7qmn6z2hnwaoi3h5aeosupozkddqwp6lqqd.onion
View full IOC feed1 total

TTPs & Attack Vectors

Tools, initial access, and MITRE ATT&CK techniques for walocker

Other

T1486

T1486

T1490

T1490

T1078

T1078

T1021

T1021

T1547

T1547

T1562

T1562

T1080

T1080

T1059

T1059

T1030

T1030

T1021.001

T1021.001

Victims(16)

CompanyDomainCountryIndustryStatusDiscovered
Pernec Corporation BhdMY MalaysiaTechnology
Claimed
6 months ago
SMC Global Securities LtdIN IndiaFinancial Services
Claimed
6 months ago
P***dMY Malaysia
Claimed
6 months ago
TPPLIN IndiaOther
Claimed
11 months ago
Seoudi Investment GroupEG EgyptOther
Claimed
11 months ago
Cavelier AbogadosCO ColombiaProfessional Services
Claimed
11 months ago
Hevea‑Cameroun S.A.CM CameroonOther
Claimed
11 months ago
Monos GroupMN Mongolia
Claimed
11 months ago
Doi Tung Development ProjectTH ThailandOther
Claimed
11 months ago
U***YUY Uruguay
Unknown
11 months ago
T***L
Unknown
11 months ago
Eswatini Water Services CorporationSZ EswatiniEnergy & Utilities
Unknown
11 months ago
Bela-Bela MunicipalityZA South AfricaGovernment & Defense
Unknown
11 months ago
Union Civil Service BoardMM MyanmarGovernment & Defense
Unknown
11 months ago
Usha Martin LimitedIN IndiaManufacturing
Unknown
11 months ago
WayUp – BrasilBR BrazilTechnology
Unknown
11 months ago