Boolka

Boolka

About

Boolka’s evolving stealth tactics have made it a notable player within the Masked Actors community. This group’s ability to adapt and deploy modular website malware mean it’s a significant threat. Not only can this expose victims to financial crime, but reputational damage too.

Active since
January 2024
Primary targets
Vast exploitation of vulnerabilities on high traffic websites, potentially affecting thousands of users and businesses
Motivation
Financial gain through data theft and exploitation of website weaknesses.
Heritage
Represent a new wave of cybercriminals
Learn more about Boolka from Group-IB’s research
Victims

Exact numbers are unclear, but the group’s skills in exploiting vulnerabilities on websites are vast — potentially affecting thousands of users and businesses worldwide. Particularly those with poorly secured websites which lack defences against SQL injection and cross-site scripting hacks. This includes data-sensitive sectors like e-commerce and finance.

What we know about Boolka members

We believe the actor behind Boolka is likely to be an individual or small group with advanced knowledge of website vulnerabilities and malware delivery platforms.