All actors

CostaRicto

Reports
6
Last reported
Known CVEs
2
ID
costaricto
Merge evidence
2 alias matches

Reports per quarter

  1. 2020 Q4: 2 reports
  2. 2021 Q1: no reports
  3. 2021 Q2: 1 report
  4. 2021 Q3: no reports
  5. 2021 Q4: 2 reports
  6. 2022 Q1: no reports
  7. 2022 Q2: no reports
  8. 2022 Q3: no reports
  9. 2022 Q4: no reports
  10. 2023 Q1: no reports
  11. 2023 Q2: no reports
  12. 2023 Q3: no reports
  13. 2023 Q4: no reports
  14. 2024 Q1: no reports
  15. 2024 Q2: no reports
  16. 2024 Q3: no reports
  17. 2024 Q4: no reports
  18. 2025 Q1: no reports
  19. 2025 Q2: no reports
  20. 2025 Q3: no reports
  21. 2025 Q4: no reports
  22. 2026 Q1: no reports
  23. 2026 Q2: 1 report
Dated reports, 2020 Q4 to 2026 Q2.

CVEs named in reports

KEV marks a CVE in CISA's Known Exploited Vulnerabilities Catalog, and “ransomware” marks one that the catalog records as used in ransomware campaigns.

Reports

  1. Mercenary APTs – An Exploration

    date in the title fromORKL

  2. The CostaRicto Campaign- Cyber-Espionage Outsourced

    date in the title fromORKL

  3. The CostaRicto Campaign_ Cyber-Espionage Outsourced

    date in the CCS '25 data BlackBerry fromORKLCCS '25 data

Newest first. Details opens the report in Explore.