| SYMBOL | COMMON_NAME | aka. SYNONYMS |
ExfilSquad is an emerging data-extortion group that surfaced on July 26, 2026, operating a Tor-hosted Data Leak Site to publicly claim data theft from 15 organizations, including Microsoft. Their model focuses on public exposure and pressure tactics without confirmed encryption, lacking evidence of a Ransomware-as-a-Service structure or specific initial-access methods. The group has not provided forensic evidence or verifiable data samples, raising questions about the credibility of their claims, which may involve reused or fabricated data.
There are currently no families associated with this actor.
There are currently no references.