Threadlinqs IntelligenceStart free

Threat actorTracked since 2026-04

VECT

As of 2026-08-22, VECT is a threat actor tracked by Threadlinqs Intelligence across 4 threats spanning ransomware. ATT&CK coverage spans 70 techniques across 15 tactics in 4 of 4 tracked threats. Most-observed techniques: T1021.002 (SMB/Windows Admin Shares), T1485 (Data Destruction), T1489 (Service Stop).

Tracked threats
42 critical · 2 high
First seen
2026-04-28
Last seen
2026-08-22
ATT&CK techniques
70across 4 of 4 threats
Related CVEs
1Referenced by its activity
4 tracked threat(s) · Categories: RANSOMWARE

Activity timeline

VECT appears in 4 tracked threats between and ; the busiest month was 2026-04 with 1 report.

ATT&CK techniques observed

70 techniques observed across 4 of 4 tracked threats · Discovery (9), Credential Access (7), Execution (7), Impact (7), Lateral Movement (6), Persistence (6)
  • T1021.002 SMB/Windows Admin Shares — Lateral Movementobserved in 4 of 4 tracked threats
  • T1485 Data Destruction — Impactobserved in 4 of 4 tracked threats
  • T1489 Service Stop — Impactobserved in 4 of 4 tracked threats
  • T1021.004 SSH — Lateral Movementobserved in 3 of 4 tracked threats
  • T1027 Obfuscated Files or Information — Stealth (formerly Defense Evasion)observed in 3 of 4 tracked threats
  • T1078 Valid Accounts — Initial Accessobserved in 3 of 4 tracked threats
  • T1486 Data Encrypted for Impact — Impactobserved in 3 of 4 tracked threats
  • T1490 Inhibit System Recovery — Impactobserved in 3 of 4 tracked threats
  • T1685 Disable or Modify Tools — Defense Impairmentobserved in 3 of 4 tracked threats
  • T1685.005 Clear Windows Event Logs — Defense Impairmentobserved in 3 of 4 tracked threats
  • T1047 Windows Management Instrumentation — Executionobserved in 2 of 4 tracked threats
  • T1057 Process Discovery — Discoveryobserved in 2 of 4 tracked threats
  • T1059.001 PowerShell — Executionobserved in 2 of 4 tracked threats
  • T1059.004 Unix Shell — Executionobserved in 2 of 4 tracked threats
  • T1082 System Information Discovery — Discoveryobserved in 2 of 4 tracked threats

Tracked threats

Related CVEs

1 CVE referenced by tracked VECT activity