FlagThis
← Threat Actors
/
Russia
/
BlackCat / ALPHV
DOSSIER // BLACKCAT-ALPHV
BlackCat / ALPHV
▲ High Threat
Russia
Primary Aliases:
UNC4466
ALPHV
Noberus
🔍 Adversary Rosetta Stone (3) ▾
📋 Copy All
Sponsor / State Affiliation
Financially motivated criminal group
Primary Motivation
Financial gain (ransomware)
Active Timeline
2021 – Present
Confidence Rating
70% (Grounded)
Change Healthcare attack ($22M ransom), MGM Resorts, ALPHV exit scam (2024)
📥 Export ATT&CK Layer (.json)
🔔 RSS Feed
🛡️ MITRE ATT&CK (G1006) ↗
🏛️ CISA Advisories ↗
📋 Copy Dossier Briefing
⚔️ Weaponized CVE Matrix
(2)
CVE-2022-22954
Weaponized Vulnerability
CVSS 8.5
KEV
EPSS 85.0%
CVE-2023-46604
Weaponized Vulnerability
CVSS 8.5
KEV
EPSS 85.0%
📋 Copy CSV
Tenable Nessus
Qualys / Wiz
🎯 Target Sectors & Focus
Healthcare
Finance
Legal
Technology
Critical infrastructure
🛡️ MITRE ATT&CK® Attack Lifecycle
(5 TTPs)
📥 Download Navigator JSON
All Stages
5
Command & Control
1
Exfiltration & Impact
2
Operational Techniques
2
Command & Control
1
T1071
Data exfiltration before encryption
↗
Exfiltration & Impact
2
T1485
Rust-based ransomware
↗
T1485
Triple extortion
↗
Operational Techniques
2
T1000
ESXi attacks
↗
T1000
Affiliate model
↗
📰 Verified Campaigns & Intelligence Archive
🔔 Subscribe to Alerts
No recent breaking campaign alerts recorded in the FlagThis threat database.
Adversary Rosetta Stone // BlackCat / ALPHV
×
🔍 Mandiant / Google Threat Intel
UNC4466
📋
🛡️ Other Industry Tracking Codes
ALPHV
📋
Noberus
📋
Copied to clipboard
SHARE INTELLIGENCE WIRE
×
Story Title
X / Twitter
Bluesky
LinkedIn
Copy Link
LINK COPIED TO CLIPBOARD