APT / THREAT GROUP
Deputy
2
aliases
Last seen:Mar 17, 2026
Intelligence Profile
According to IBM X-Force, this is a loader component for Sheriff.
Threat Analysis
Deputy is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
Intelligence Reports Mentioning Deputy
Finland brings charges against cargo ship officers for cutting submarine cables
The Record· Jun 15, 2026
Meta Tapped a Pentagon Supplier to Prototype Face Recognition for Its Glasses
Wired Security· Jun 15, 2026
Meta AI Hands Over High-Profile Instagram Accounts to Hackers
SecurityWeek· Jun 2, 2026
Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container Isolation
The Hacker News· Mar 13, 2026
US ‘committed’ to fighting transnational gangs behind Southeast Asian scam compounds: FBI
The Record· Feb 24, 2026
External References
Quick Facts
TypeAPT / Threat Group
Aliases2
Also Known As
win.deputyDeputy
External Intelligence
Malpedia: win.deputyResearch Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.