KittenSec is a self-described hacktivist group that has claimed intrusions against government organizations and private entities in multiple NATO-aligned countries. The group has framed its operations as efforts to expose corruption and has publicly associated its activity with anti-NATO themes. Reported claims include compromises of Romanian government systems and theft of large volumes of data, as well as additional data theft affecting targets in Chile, France, Greece, Italy, and Panama. KittenSec has indicated interest in targeting additional NATO countries. KittenSec has been linked by its own statements to other hacktivist operations, including SiegedSec and ThreatSec, and has reportedly collaborated with SiegedSec in campaigns affecting Romania, Greece, France, Chile, Panama, and Italy. The available reporting supports data theft and public leaking claims, but also includes expert skepticism about whether the group is a genuine independent hacktivist operation or a possible facade for other interests. High-confidence attribution beyond the group’s self-presentation is currently not available.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
2 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Hacktivist group collaborating with SiegedSec on anti-NATO-motivated activity; associated with claimed compromises across multiple countries.
Claimed compromises of government organizations and private entities across NATO-aligned countries, leaked data from Romanian government systems, and admitted obtaining data from 13 million individuals from targets in Chile, France, Greece, Italy, and Panama. The group also indicated plans to target additional NATO countries.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.