logo

INC Ransom Threat Targets Australia And Pacific Networks

ID: ecfec2e6-73ae-5c8c-913a-36f4998723a7

STIX ID: report--ecfec2e6-73ae-5c8c-913a-36f4998723a7

Feed Name: Cyble Blog

Threat Score
78/100

Date Published: 2026-03-16

Date Updated: 2026-07-16

...
...

**Joint advisory on INC Ransom RaaS activity targeting the Pacific region:** Australian, New Zealand, and Tongan cybersecurity agencies warn that the INC Ransom affiliate ecosystem (aka Tarnished Scorpion / GOLD IONIC) is conducting ransomware campaigns against high-value targets—notably health and professional services—using spear-phishing, exploitation of internet-facing systems, credential purchase, and legitimate tools for exfiltration; incidents include widespread encryption and data publication (double extortion) with a major disruption to Tonga’s Ministry of Health and multiple confirmed incidents in Australia and New Zealand, accompanied by practical mitigation guidance (MFA, backups, patching, privileged access controls, and incident response).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.