ransomware5 leak-site claimsLatest observed leak-site post 2026-08-20ORKL search ↗
Portable threat brief
DYSPHOR1A
Versioned profile fields only · no model narrative
Opens the browser print dialog; choose Save as PDF.
PDF export is unavailable. The threat brief remains available below; use your browser's Print command.
Executive facts
Actor
DYSPHOR1A
Kind
ransomware
First observed
2026-08-20
Latest observed
2026-08-20
Leak-site claims
5
Catalogued techniques
0
Scope
Tracked sectors
Education, Business & Professional Services, Financial Services, Government
Claim records
2026-08-20 to 2026-08-20
Decisive signals with dates
No dated decisive signals are attached to this actor's linked vulnerabilities.
Verified techniques
No verified ATT&CK mapping in this corpus.
Defensive actions
No defensive actions are attached to this profile.
Targeted sectorsEducationBusiness & Professional ServicesFinancial ServicesGovernment
Activity window in this corpus
The tracker's observed corpus window only — not this actor's lifetime and not evidence of dormancy outside these dates.
Claim records
First observed Latest observed
Verified ATT&CK phases represented
No verified ATT&CK mapping in this corpus
Origin and motivation
Origin and motivation not attributed.
No MITRE ATT&CK group mapping exists for this actor yet. Mappings here are strict: an actor links to a MITRE group only when the group's own name, aliases, or MITRE-published description match, and MITRE has not catalogued this group. Technique and defensive action data will appear automatically if a verified mapping lands.