⤷ Title: GOLD SALEM Abuses Velociraptor DFIR Tool as Ransomware Precursor Following SharePoint ToolShell Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:20:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #China_nexus #DFIR Abuse #GOLD SALEM #LockBit #ransomware #Sharepoint #ToolShell #Velociraptor #Warlock
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:20:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #China_nexus #DFIR Abuse #GOLD SALEM #LockBit #ransomware #Sharepoint #ToolShell #Velociraptor #Warlock
Daily CyberSecurity
GOLD SALEM Abuses Velociraptor DFIR Tool as Ransomware Precursor Following SharePoint ToolShell Exploitation
GOLD SALEM (Storm-2603) is exploiting SharePoint via ToolShell then abusing the Velociraptor DFIR tool as a ransomware precursor. The group deploys Warlock and LockBit 3.0 variants, often targeting critical infra.
⤷ Title: The Extortion Deficit: Ransomware Payments Plunge by 33% as Victims Refuse to Pay
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 02:06:41 +0000
════════════════════════
⌗ Tags: #Malware #AML Act 2020 #BlackCat #Cybersecurity 2024 #Financial Crime #FinCEN #Healthcare Data #LockBit #Manufacturing Security #ransomware #U.S. Treasury
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 02:06:41 +0000
════════════════════════
⌗ Tags: #Malware #AML Act 2020 #BlackCat #Cybersecurity 2024 #Financial Crime #FinCEN #Healthcare Data #LockBit #Manufacturing Security #ransomware #U.S. Treasury
Penetration Testing Tools
The Extortion Deficit: Ransomware Payments Plunge by 33% as Victims Refuse to Pay
The U.S. Treasury is cautiously suggesting that the ransomware market may be beginning to cool. In a new
⤷ Title: A Desperate Cartel: Inside the Unlikely Alliance of Qilin, DragonForce, and a Fading LockBit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 00:43:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #Cybercrime Cartel #data extortion #DragonForce #LockBit #Operation Cronos #Qilin #RaaS #ransomware #Yarix Intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 00:43:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #Cybercrime Cartel #data extortion #DragonForce #LockBit #Operation Cronos #Qilin #RaaS #ransomware #Yarix Intelligence
Daily CyberSecurity
A Desperate Cartel: Inside the Unlikely Alliance of Qilin, DragonForce, and a Fading LockBit
In a digital underworld increasingly fractured by law enforcement takedowns and eroding trust, three of the most notorious ransomware groups have allegedly joined forces. A new report by the Yarix…
⤷ Title: LockBit 5.0 Sustains Global Ransomware Dominance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:01:30 +0000
════════════════════════
⌗ Tags: #Malware #AhnLab #Cybercrime #Data Leak Site #information_security #LockBit #Malware Analysis #RaaS #ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:01:30 +0000
════════════════════════
⌗ Tags: #Malware #AhnLab #Cybercrime #Data Leak Site #information_security #LockBit #Malware Analysis #RaaS #ransomware
Daily CyberSecurity
LockBit 5.0 Sustains Global Ransomware Dominance
The hydra of the cybercrime world has grown another head. Since its emergence in late 2019, the LockBit gang has arguably become the most prolific ransomware operator in history. Now, a new analys…
⤷ Title: DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:42:44 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #Conti #Cyber Cartel #decryptor #DragonForce #infosec #LockBit 3.0 #Malware Analysis #RansomBay #ransomware #S2W
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:42:44 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #Conti #Cyber Cartel #decryptor #DragonForce #infosec #LockBit 3.0 #Malware Analysis #RansomBay #ransomware #S2W
Daily CyberSecurity
DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA
A comprehensive new analysis by security researchers at S2W details the inner workings of the DragonForce Ransomware Group, revealing a threat actor that is not only deploying sophisticated malwar…
⤷ Title: One Code to Lock Them All: LockBit 5.0 Unifies Attacks on Windows, Linux, and ESXi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Feb 2026 00:30:29 +0000
════════════════════════
⌗ Tags: #Malware #Acronis TRU #Cybercrime #ESXi Ransomware #Linux Ransomware #LockBit 5.0 #Lockbit ransomware #Malware Analysis #SmokeLoader #Unified Codebase #Windows Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Feb 2026 00:30:29 +0000
════════════════════════
⌗ Tags: #Malware #Acronis TRU #Cybercrime #ESXi Ransomware #Linux Ransomware #LockBit 5.0 #Lockbit ransomware #Malware Analysis #SmokeLoader #Unified Codebase #Windows Security
Daily CyberSecurity
One Code to Lock Them All: LockBit 5.0 Unifies Attacks on Windows, Linux, and ESXi
LockBit 5.0 launches with a unified codebase targeting Windows, Linux, and ESXi. Acronis reveals identical encryption and ties to SmokeLoader.
⤷ Title: Unpatched ActiveMQ Flaw Leads to Repeat Breach and LockBit Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 01:57:51 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Apache ActiveMQ #CVE_2023_46604 #infosec #Java Spring #LOCKBIT Black #network_security #ransomware #rce #Remote Code Execution #The DFIR Report
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 25 Feb 2026 01:57:51 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Apache ActiveMQ #CVE_2023_46604 #infosec #Java Spring #LOCKBIT Black #network_security #ransomware #rce #Remote Code Execution #The DFIR Report
Daily CyberSecurity
Unpatched ActiveMQ Flaw Leads to Repeat Breach and LockBit Ransomware
The DFIR Report reveals how a persistent attacker exploited CVE-2023-46604 twice in 18 days to deploy LockBit ransomware. Patch your ActiveMQ servers now!
⤷ Title: The Unstoppable Phoenix: How the Phorpiex Botnet Reborn as a P2P Crypto-Thief
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 08 Apr 2026 09:36:54 +0000
════════════════════════
⌗ Tags: #Malware #Bitsight Research #Crypto Clipper #Cybersecurity 2026 #Information Stealer #LockBit Black #P2P Malware #Phorpiex #ransomware #Sextortion #Twizt Botnet
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 08 Apr 2026 09:36:54 +0000
════════════════════════
⌗ Tags: #Malware #Bitsight Research #Crypto Clipper #Cybersecurity 2026 #Information Stealer #LockBit Black #P2P Malware #Phorpiex #ransomware #Sextortion #Twizt Botnet
Penetration Testing Tools
The Unstoppable Phoenix: How the Phorpiex Botnet Reborn as a P2P Crypto-Thief
An ancient botnet, long relegated to the periphery of collective memory, has re-emerged with a lethality far exceeding
⤷ Title: The Rise of the Oligopoly: How Qilin, LockBit, and The Gentlemen Dominate the 2026 Ransomware Landscape
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:15:59 +0000
════════════════════════
⌗ Tags: #Malware #Akira #Check Point Research #cybercrime trends #FortiGate CVE_2024_55591 #Industrial Manufacturing Security #LockBit 5.0 #Qilin #Ransomware 2026 #The Gentlemen #threat intelligence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:15:59 +0000
════════════════════════
⌗ Tags: #Malware #Akira #Check Point Research #cybercrime trends #FortiGate CVE_2024_55591 #Industrial Manufacturing Security #LockBit 5.0 #Qilin #Ransomware 2026 #The Gentlemen #threat intelligence
Penetration Testing Tools
The Rise of the Oligopoly: How Qilin, LockBit, and The Gentlemen Dominate the 2026 Ransomware Landscape
The ransomware landscape is undergoing a period of significant consolidation as major syndicates reassert their dominance. After two
⤷ Title: LockBit 5.0: La pesadilla que no murió con la Operación Cronos
════════════════════════
𐀪 Author: Juan Ricardo Palacio | Ransomware Help
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 18:20:33 GMT
════════════════════════
⌗ Tags: #cibersecurity #ransomware #data_recovery #lockbit #infosec
════════════════════════
𐀪 Author: Juan Ricardo Palacio | Ransomware Help
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 18:20:33 GMT
════════════════════════
⌗ Tags: #cibersecurity #ransomware #data_recovery #lockbit #infosec
Medium
LockBit 5.0: La pesadilla que no murió con la Operación Cronos
Eran las 2:47 AM cuando el sistema de monitoreo dejó de enviar alertas, no porque no hubiera actividad, sino porque ya no había sistema.