Threat Group Profile

KillSec

Healthcare, Government & Finance

Overview

KillSec operates as both a hacktivist and criminal extortion group, targeting government and public sector organisations alongside opportunistic corporate victims. They have been observed leaking data from healthcare and government entities across multiple countries.

Tactics, Techniques & Procedures

Data theft and extortion, hacktivist activity, government sector targeting

Primary Targets

Government, Healthcare, Financial — geopolitically motivated

Indicators of Compromise

  • Stolen credential abuse
  • Web application exploitation

MITRE ATT&CK Techniques

  • T1190
  • T1078
  • T1041

Quick Reference

StatusACTIVE
TypeHacktivist / Data Extortion
First Seen2023
Victims TrackedMonitored

Dark Web Presence

  • http://ks5424y3wpr5zlug5c7i6svvxweinhbdcqcfnptkfcutrncfazzgz5id.onion
  • http://ks5424y3wpr5zlug5c7i6svvxweinhbdcqcfnptkfcutrncfazzgz5id.onion/posts.php

Under Attack?

If you believe killsec has targeted your organisation, contact Binary Response immediately.

Emergency Response Dark Web Monitoring →

Related Threat Actors

LockBit Rhysida Akira DragonForce View All →