Aurora

Threat Actor

The Aurora Ransomware Group is an active, Russian-speaking cybercrime operation that gained widespread attention in mid-2026 for pioneering the operational use of AI coding tools during live network intrusions.

Incidents Associated with this Threat

Malware Used by this Threat Actor

No malware identified for this threat actor.