Ransomware Group

Hellcat

Status: active • First seen 2024-0835+ known victims

Hellcat breaks into tech companies through the tools developers use every day, like Jira. They know that tech companies will pay to protect their source code and customer data.

Overview

Hellcat is a ransomware group that targets organizations through Jira and developer tools. They focus on technology companies and telecom providers.

Target Industries

Technology, Telecom, Government, Software

How They Attack

  • Jira exploitation
  • Developer tool targeting
  • Double extortion
  • Source code theft

Notable Victims

Telefonica (2024), Technology companies

Is your business exposed?

How to Protect Against Hellcat

  1. 1.

    Patch Jira and Atlassian products

  2. 2.

    Implement SSO for developer tools

  3. 3.

    Monitor developer tool access logs

MITRE ATT&CK Techniques

T1190, T1486, T1567, T1078

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required