ShellCodeX
Tools • Events • News • Insights
SEO Checker
Threat Group Profile

TiMc

Dormant / historical
Victim claims 3
First seen Apr 2026
Last activity 09 Apr 2026
Tracked since Apr 2026

Group overview

TiMc is a ransomware group that emerged in early 2026, claiming high-impact attacks against Spanish IT services leader Seidor (1 TB+ data) and oncology organization Oncologica (100 GB+), targeting Business Services, Healthcare, and IT sectors with a focus on Spanish-speaking and European targets.

Preferred targets

Healthcare · 1 Business Services · 1 Manufacturing · 1

Most targeted countries

GB · 1 ES · 1 AR · 1

Victim Claims Timeline

Back to radar
🇬🇧 United Kingdom

oncologica

www.oncologica.com

We breached into their intranet and have total control of it , with 1TB+ data exfiltrated including covid-19 database and SaaS src code like oncomine KB and Other PII Ful...

Healthcare
🇪🇸 Spain

Seidor

www.seidor.com

On behalf of A IT solution company , the first response to the data breach was trying to cover the truth, shame on you When the countdown was over, we will public your ne...

Business Services
🇦🇷 Argentina

Debene S.A. | Página Principal

debene.com

We've taken down their DC and FS, 100GB+ of the data including PII, Trade record and Full 20GB+ MySQL database backup files Due to their non-behavior we choose to put the...

Manufacturing