Icarus is a newly tracked ransomware operation, first observed on June 16, 2026, that has claimed 11 victims in its first month of activity, an unusually fast initial pace. Claimed targets concentrate in technology and business services firms, with a smaller hit to financial services, and geographic distribution so far splits evenly between the United States and Canada. No MITRE ATT&CK technique set has been catalogued for the group yet, and no operator-supplied description is on file, so claims about tooling or intrusion methods cannot be verified. The victim list includes several redacted or single-letter entries alongside named organizations such as Huntress and Gms-net, indicating the group is actively posting new claims on a near-daily cadence as of late June 2026. All victim and sector attributions here reflect claims made by the group itself and have not been independently confirmed.