Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
ExfilSquad is an emerging data-extortion group that surfaced on July 26, 2026, operating a Tor-hosted Data Leak Site to publicly claim data theft from 15 organizations, including Microsoft. Their model focuses on public exposure and pressure tactics without confirmed encryption, lacking evidence of a Ransomware-as-a-Service structure or specific initial-access methods. The group has not provided forensic evidence or verifiable data samples, raising questions about the credibility of their claims, which may involve reused or fabricated data.
No exploited CVEs have been attributed to this threat actor yet.
Browse CVE Database