Track and analyze APT groups, ransomware gangs, hacktivists and cybercrime organizations — their targets, malware, techniques and IOCs updated in real time.
500+Threat Actors
100K+IOC Indicators
10K+ATT&CK Techniques
Top Threat Actors
1,138
DEV-0147
APT
#1
61.5MAudience
3kNews
0IOCs
Target Countries
United Arab EmiratesChinaUnited KingdomIsrael
Target Sectors
Funds, Trusts, and Other Financial VehiclesHospitalsOil & GasEnergy & Utilities
Associated Malware
win.flash_develop
Related CVEs
CVE-2025-59287
ATT&CK IDs
T1078.001T1068T1105T1193
View Details
Storm-0324
APT
DEV-0324 · Sagrid · TA543
#2
49.3MAudience
249News
1IOCs
Target Countries
ArgentinaAustraliaCanadaGermany
Target Sectors
Public AdministrationHospitalsRestaurantsAerospace Product and Parts Manufacturing
Associated Malware
—
Related CVEs
CVE-2023-36884CVE-2023-21715CVE-2023-20198
ATT&CK IDs
T1059.001T1071.001T1027T1566.001
View Details
NoName057
APT
05716nnm · Nnm05716 · NoName057(16) · NoName05716
#3
38.4MAudience
1kNews
24kIOCs
Target Countries
United Arab EmiratesArmeniaArgentinaAustria
Target Sectors
Food ManufacturingOther Information ServicesMonetary Authorities-Central BankCredit Unions
SOCRadar Threat Actor Database is a free repository of structured intelligence profiles covering over 500 documented cyber threat actors — nation-state APT groups, ransomware operations, hacktivist collectives and financially motivated cybercrime organizations. Each profile aggregates origin country, targeted sectors and geographies, attributed malware families, known aliases, historical campaigns, MITRE ATT&CK technique coverage and indicators of compromise. No account required.
F.A.Q.
Common questions about threat actors and APT groups