Termite

Termite — Threat Actor Profile | ObscureIQ
ObscureIQ Threat Intelligence · Actor Profile

TermiteConfidence: Medium

Ransomware

Motivation: Financial

1Attributed Breaches Circulating
MediumAttribution Confidence
RansomwareActor Type

Overview

Linked to the November 2024 Blue Yonder supply-chain incident, active from late 2024 with a Babuk-derived encryptor and a Tor leak site. Public reporting is still limited, so attribution and lineage should be treated as developing.

Tactics, Targeting & TTPs

Double extortion with a Tor leak site. Public reporting is still limited; attribution and lineage should be treated as developing.

Source

Attribution draws on public threat-intelligence reporting · Established (multi-source). Primary source →

Were you exposed in one of these breaches?

Check your exposure privately, or request a tailored exposure audit.

Request Consultation