APT / THREAT GROUP
Pink
2
aliases
Last seen:Mar 17, 2026
Intelligence Profile
A botnet with P2P and centralized C&C capabilities.
Threat Analysis
Pink is a known-sophistication threat actor of undetermined national origin, engaged in cyber operations with a primary motivation of unknown activity patterns.
Intelligence Reports Mentioning Pink
Vishing Extortion Group UNC6671 Rebrands After Making Millions
SecurityWeek· Aug 7, 2026
Hackers Stalked Me by Hijacking a Smartwatch for Kids
Wired Security· Aug 6, 2026
UNC6671 Rebrands: Multi-Brand Vishing Extortion Targets Financial Services and Enterprise Cloud Environments
Google Threat Intelligence· Aug 6, 2026
External References
Quick Facts
TypeAPT / Threat Group
Aliases2
Also Known As
Pinkelf.pink
External Intelligence
Malpedia: elf.pinkResearch Links
Data sourced from Malpedia, Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Actor attribution is based on available intelligence and may be incomplete.