APT / THREAT GROUP
Zilla
1
aliases
Intelligence Profile
ransomware
Threat Analysis
Zilla is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
Intelligence Reports Mentioning Zilla
KnowledgeDeliver flaw exploited as a zero-day to install web shells
BleepingComputer· May 26, 2026
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
The Hacker News· May 26, 2026
Patch Tuesday, May 2026 Edition
Krebs on Security· May 12, 2026
Claude Mythos Finds 271 Firefox Vulnerabilities
SecurityWeek· Apr 22, 2026
Mozilla Used Anthropic’s Mythos to Find and Fix 271 Bugs in Firefox
Wired Security· Apr 21, 2026
Firefox now has a free built-in VPN with 50GB monthly data limit
BleepingComputer· Mar 24, 2026
Anthropic Finds 22 Firefox Vulnerabilities Using Claude Opus 4.6 AI Model
The Hacker News· Mar 7, 2026
A fake FileZilla site hosts a malicious download
Malwarebytes Labs· Mar 2, 2026
Quick Facts
TypeAPT / Threat Group
Aliases1
Also Known As
Zilla
Research Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.