Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Due to abuse of the free use of Ransomware.live, we have updated our Terms & Conditions. Please review them before continuing to use the Data.
Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Kittykatkrew

KittyKatKrew is a newly emerged ransomware group first identified in early 2026, using both direct and double-extortion methods against US targets including the Arkansas State Crime Laboratory, operating under the alias KKK with Telegram and X/Twitter communication channels.

Victims
2
 
First Victim
2026-02-23
(est. attack date)
Discovery Date
2026-02-23
 
Last Seen
2026-02-25
 
Inactive Since
173
days
Avg Delay
N/A
attack→claim
Infostealer
100.0%
victims with domain
Countries
1
hit
Uptime
— avg (30d)
View Victims on World Map View Group Statistics
Attack Velocity — Last 12 months (based on attack estimated date if available)

Known Locations (2)
Favicon Title Type Available Last Visit Server Info FQDN
favicon No 2026-04-28T07:24:22 jzdonx6ak2swiitotgajdfh3wjpvyunpi3hatte343dvw4nw4vv2ayqd.onion
favicon KittyKatKrew No 2026-04-28T07:26:57 vs6ccwled72hwmescxr2e32mmfrm6vbqbo7gbmmkxnu7g5fps7ndeeyd.onion

Target
Top 5 Activity Sectors
  • Financial Services 1
Top 5 Countries
  • US flag United States 1

Heatmap

YARA Rules (1)

Victims (2)
Logo
Discovered: 2026-02-25 (5mo ago)
Mission-driven auto lender expanding access to affordable vehicle ownership nationwide. Deadline: 20…
Logo
Discovered: 2026-02-23 (5mo ago)
test Status: Awaiting Payment…