Extortion Com is a subset of the loosely organized, predominantly English-speaking cybercriminal ecosystem known as The Com. It is primarily associated with exploitation of children and extortion of minors, typically girls and young women, through threats of doxing, swatting, and physical violence. The group operates within a broader network of Com subgroups whose members share criminal methods and expertise, and which has been associated with cyber-enabled coercion and offline violence. Extortion Com has been linked to the 764 offshoot, which is associated with grooming and coercive exploitation of minors and child sexual abuse material offenses.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
2 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
A named primary subset of The Com; the content does not attribute specific operations or malware to it.
Child-exploitation/extortion subgroup within The Com ecosystem focused on coercing minors (often females) using threats of doxing, swatting, and violence.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.