Skip to content

iah6477

iah6477 is a ransomware threat actor associated with multiple reported intrusions against U.S.-based organizations.

Profile source: Mallory opens in a new tab

iah6477

Family profile

iah6477 is a ransomware threat actor associated with multiple reported intrusions against U.S.-based organizations. Reported victims include entities in the financial services, information technology, and consumer-facing retail sectors. The actor has been linked to ransomware incidents that also involved theft of victim data, indicating extortion activity tied to data exfiltration in addition to ransomware deployment. Based on the available reporting, iah6477 has targeted organizations in the United States and has affected sectors including financials, information technology, and consumer discretionary. Publicly available facts in this dataset do not establish the actor's country of origin, broader tooling, or any confirmed aliases beyond the name iah6477.

Operational record

Recent claims

MITRE ATT&CK

iah6477 in ATT&CK

1 distinct techniques

We appreciate you

Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.