Emperador surfaced on our tracker this month with a single claimed target, the City Government of Baguio in the Philippines, listed twice across its first two entries, suggesting either a duplicate posting or a staged disclosure of the same intrusion. With only two claims logged since first appearance on 2026-08-10, the group's operational tempo, infrastructure, and tooling remain largely unobserved, and no MITRE ATT&CK techniques have been catalogued for it yet. Its sole focus so far sits in the government and defense sector, concentrated entirely on Philippine local government, which may indicate a regional or opportunistic targeting pattern rather than an established sector preference. No group description or attacker-supplied rhetoric is on file, so claims about motive, scale, or capability cannot be assessed at this stage. Given the limited sample size, Emperador should be treated as an unproven, newly emerged entrant rather than a group with a demonstrated pattern of activity.