Vexy

Threat Actor

Vexy is a newly observed ransomware and cyber extortion operation first publicly tracked in September 2026. Current public reporting remains limited, but available tracking identifies the group as active and indicates an extortion model centered on public victim listings and threats tied to data exposure.

Incidents Associated with this Threat

Malware Used by this Threat Actor

No malware identified for this threat actor.