ZeroHour

titan

ransomware group · aka unknown (no widely reported alternative names identified in public vendor research) · unknown · active since 2026-07-04 (first leak-site post tracked by this dashboard; earlier activity unknown)

Victims · 7d
0flat
Victims · 30d
9active targets
Victims · 90d
15
All-time (tracked)
24since 2026-05-19
Last post
08-20 18:37UTC
Estimated earnings
public reporting
Profile · glm-5.3-flash · updated

Titan is a small, recently emerged ransomware/data-extortion brand tracked by this dashboard since 2026-07-04, with 15 victims published since tracking began and continued posts through 2026-08-20. Its victim pool skews strongly toward Italy, covering industrial manufacturers, a regional water utility, and professional-services firms, alongside isolated victims in Czechia and India. The moderate posting cadence (9 victims in the last 30 days) is consistent with a low-volume operation or early-stage affiliate activity, but no widely reported vendor research confirms the group's structure, malware strain, or attribution. Intrusion methods, encryption behavior, and ransom/earnings details remain unknown in public reporting as of this profile's data.

Tactics & tooling
  • Posts victim names on a public leak site, consistent with double-extortion-style pressure through threatened or claimed data publication
  • Targets operating businesses rather than consumers; listed victims include manufacturers, a utility, and services firms
  • Victim pool heavily Italy-weighted (Italian corporate suffixes S.r.l./S.p.A. dominate listings), with scattered Czech and Indian victims suggesting opportunistic rather than strictly regional targeting
  • Low-to-moderate posting volume (9 victims in 30 days, 15 in 90 days) consistent with a small operator or newly active affiliate
  • No widely reported malware, tooling, or infrastructure analysis identified; intrusion, encryption, and exfiltration techniques unknown
Targeted sectors
Manufacturing/industrialUtilities (water)Professional/consulting servicesHealthcare
Notable public victims

Alto Calore Servizi S.p.A. (Italian regional water services utility, Campania), ELCON MEGARAD S.p.A. (Italian manufacturer of electrical insulating materials), Termotecnica Industriale S.r.l. (Italy), Elbor S.p.A. (Italy), Tedesco & Partners STP srl (Italian professional services firm), Pertinent Healthcare Business Solutions Pvt. Ltd. (India, healthcare business services)

Estimated earnings

No public figure.

Leak-site victims

VictimDiscoveredDetails
Termotecnica Industriale S.r.l. · 26d ago
Elbor S.p.A. · 26d ago
CTP S.r.l. · 26d ago
Alto Calore Servizi SPA · 26d ago
Tedesco & Partners STP srl · 26d ago
POEMA S.r.l. · 26d ago
TECNOLOGICA S.r.l. · 26d ago
CONDOR SPA · 26d ago
ELCON MEGARAD S.p.A · 26d ago
PERTINENT HEALTHCARE BUSINESS SOLUTIONS PRIVATE LIMITED · Jul 22, 2026
Cooperate consulting CZ s.r.o. · Jul 13, 2026
DataOstrov s.r.o. · Jul 13, 2026
Ozmit s.r.o. · Jul 13, 2026
Cooperate service CZ s.r.o. · Jul 12, 2026
Eureka Construction INC · Jul 4, 2026
Apex Maritime Co., Inc. · May 19, 2026
SIRILAK SEAFOOD (PW) LTD. · May 19, 2026
Mezta Corporativo, S.A. de C.V. · May 19, 2026
Abp Autoricambi Srl · May 19, 2026
DFI AMERICA, LLC · May 19, 2026
CRIT Tunisie · May 19, 2026
Groupe CRIT SA · May 19, 2026
ETM-ELECTROMATIC, INC. · May 19, 2026
Quahe Woo & Palmer LLC · May 19, 2026

In the newsAll →

No articles mention this group yet.

Victim posts come from the group's leak site via RansomLook and are claims, not confirmations. The profile is written by the model from public reporting and refreshed monthly; earnings figures cite their source and year. First tracked .