⤷ Title: DragonForce Ransomware Group Targets Saudi Arabia with Large-Scale Data Breach
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sat, 01 Mar 2025 01:37:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Data Leak #CVE_2021_44228 #CVE_2024_21412 #CVE_2024_21887 #CVE_2024_21893 #DragonForce ransomware group
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sat, 01 Mar 2025 01:37:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Data Leak #CVE_2021_44228 #CVE_2024_21412 #CVE_2024_21887 #CVE_2024_21893 #DragonForce ransomware group
Daily CyberSecurity
DragonForce Ransomware Group Targets Saudi Arabia with Large-Scale Data Breach
Learn about the DragonForce ransomware group's first major attack in Saudi Arabia, exposing 6 TB of sensitive data.
⤷ Title: Retail Under Fire: Inside the DragonForce Ransomware Attacks on Industry Giants
════════════════════════
𐀪 Author: MITRE Doggy
════════════════════════
ⴵ Time: Sat, 03 May 2025 11:46:35 GMT
════════════════════════
⌗ Tags: #dragonforce #ransomware #cybersecurity #raas #cyberattack
════════════════════════
𐀪 Author: MITRE Doggy
════════════════════════
ⴵ Time: Sat, 03 May 2025 11:46:35 GMT
════════════════════════
⌗ Tags: #dragonforce #ransomware #cybersecurity #raas #cyberattack
Medium
Retail Under Fire: Inside the DragonForce Ransomware Attacks on Industry Giants
DragonForce is a new Ransomware-as-a-Service (RaaS) group that emerged in 2023, known for recruiting affiliates and executing ransomware…
⤷ Title: DragonForce Ransomware Cartel Hits UK Retailers with Custom Payloads and Global Extortion Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:10:23 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Conti #CVE_2024_21887 #cyberattack #DragonForce #LockBit #RansomBay #ransomware #SentinelOne #Threat Actors #UK retailers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:10:23 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Conti #CVE_2024_21887 #cyberattack #DragonForce #LockBit #RansomBay #ransomware #SentinelOne #Threat Actors #UK retailers
Daily CyberSecurity
DragonForce Ransomware Cartel Hits UK Retailers with Custom Payloads and Global Extortion Campaign
DragonForce ransomware cartel targets UK retailers with Conti-based payloads, RansomBay leaks, and phishing attacks, warns SentinelOne report.
⤷ Title: Scattered Spider (UNC3944) Resurfaces with Ties to DragonForce and RansomHub in Retail Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 May 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #DragonForce #Mandiant #RansomHub #ransomware #retail cyberattack #Scattered Spider #social engineering #UNC3944
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 May 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #DragonForce #Mandiant #RansomHub #ransomware #retail cyberattack #Scattered Spider #social engineering #UNC3944
Daily CyberSecurity
Scattered Spider (UNC3944) Resurfaces with Ties to DragonForce and RansomHub in Retail Attacks
UNC3944 resurfaces as Scattered Spider, linked to DragonForce and RansomHub in new retail attacks. Mandiant warns of social engineering escalation.
⤷ Title: Hackers Now Targeting US Retailers After UK Attacks, Google
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 16 May 2025 10:37:12 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cybersecurity #DragonForce #Google #Retail #Scattered Spider #United Kindom #United States
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 16 May 2025 10:37:12 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cybersecurity #DragonForce #Google #Retail #Scattered Spider #United Kindom #United States
Hackread
Hackers Now Targeting US Retailers After UK Attacks, Google
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Ransomware Attack: MSP’s RMM Tool Abused to Spread DragonForce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 29 May 2025 00:08:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2024_57726 #CVE_2024_57727 #cyberattack #cybersecurity #DragonForce #MSP #ransomware #RMM #SimpleHelp
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 29 May 2025 00:08:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2024_57726 #CVE_2024_57727 #cyberattack #cybersecurity #DragonForce #MSP #ransomware #RMM #SimpleHelp
Daily CyberSecurity
Ransomware Attack: MSP's RMM Tool Abused to Spread DragonForce
Attackers compromised an MSP's RMM tool (SimpleHelp) to deploy DragonForce ransomware across customer environments.
⤷ Title: Ransomware Gang Qilin Rises Amid Collapse of Major Gangs Like RansomHub and LockBit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 19 Jun 2025 00:19:57 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #cyberattack #Cybercrime #Cybereason #DragonForce #Everest #LockBit #Qilin #RaaS #RansomHub #ransomware #Ransomware_as_a_Service
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 19 Jun 2025 00:19:57 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #cyberattack #Cybercrime #Cybereason #DragonForce #Everest #LockBit #Qilin #RaaS #RansomHub #ransomware #Ransomware_as_a_Service
Daily CyberSecurity
Ransomware Gang Qilin Rises Amid Collapse of Major Gangs Like RansomHub and LockBit
Qilin ransomware is rapidly dominating the RaaS landscape, as rivals like RansomHub and LockBit face collapse, internal chaos, and public defacements by "XOXO from Prague."
⤷ Title: Ransomware War Ignites: DragonForce & RansomHub Clash Threatens Businesses with Re-Extortion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 03:01:57 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Affiliate Marketing #Cyber Conflict #cybercrime #cybersecurity #DragonForce #Extortion #RaaS #RansomHub #ransomware #Ransomware_as_a_Service
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 09 Jul 2025 03:01:57 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Affiliate Marketing #Cyber Conflict #cybercrime #cybersecurity #DragonForce #Extortion #RaaS #RansomHub #ransomware #Ransomware_as_a_Service
Penetration Testing Tools
Ransomware War Ignites: DragonForce & RansomHub Clash Threatens Businesses with Re-Extortion
A war between DragonForce and RansomHub ransomware groups threatens businesses with re-extortion. DragonForce's cartel model and RansomHub's alleged takedown mark escalating tensions.
⤷ Title: Global Cyber Authorities Warn of Escalating Threat from Scattered Spider Group
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 01:46:37 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ACSC #CCCS #CISA #Cybercrime #DragonForce #fbi #Law Enforcement #MFA Fatigue #NCSC UK #ransomware #RCMP #Scattered Spider #SIM Swapping #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 01:46:37 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ACSC #CCCS #CISA #Cybercrime #DragonForce #fbi #Law Enforcement #MFA Fatigue #NCSC UK #ransomware #RCMP #Scattered Spider #SIM Swapping #social engineering
Daily CyberSecurity
Global Cyber Authorities Warn of Escalating Threat from Scattered Spider Group
A joint advisory from US, UK, Canada, and Australia warns of Scattered Spider's evolving tactics, now using DragonForce ransomware, spearphishing, SIM swapping, and MFA fatigue to compromise systems.
⤷ Title: DragonForce Ransomware: Technical Analysis and Mitigation Strategies
════════════════════════
𐀪 Author: Loginsoft
════════════════════════
ⴵ Time: Tue, 23 Sep 2025 11:21:56 GMT
════════════════════════
⌗ Tags: #loginsoft #dragonforce #cybersecurity #ransomware #threatintel
════════════════════════
𐀪 Author: Loginsoft
════════════════════════
ⴵ Time: Tue, 23 Sep 2025 11:21:56 GMT
════════════════════════
⌗ Tags: #loginsoft #dragonforce #cybersecurity #ransomware #threatintel
Medium
DragonForce Ransomware: Technical Analysis and Mitigation Strategies
What started as a pro-Palestine hacktivist group has evolved into DragonForce, a profit-driven ransomware operation now shaping the RaaS…
⤷ Title: DragonForce Ransomware Strikes Manufacturing Sector with Brute-Force, Exfiltrating Data Over SSH to Russian Host
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 07 Nov 2025 00:12:11 +0000
════════════════════════
⌗ Tags: #Malware #Brute Force #Darktrace #DragonForce #Manufacturing #openvas #RaaS #ransomware #SSH Exfiltration
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 07 Nov 2025 00:12:11 +0000
════════════════════════
⌗ Tags: #Malware #Brute Force #Darktrace #DragonForce #Manufacturing #openvas #RaaS #ransomware #SSH Exfiltration
Daily CyberSecurity
DragonForce Ransomware Strikes Manufacturing Sector with Brute-Force, Exfiltrating Data Over SSH to Russian Host
Darktrace exposed a DragonForce RaaS attack on a manufacturer. The multi-phase intrusion used brute force and OpenVAS for recon, then exfiltrated data over SSH to a Russian-based malicious host.
⤷ Title: MSP Nightmare: Medusa & DragonForce Exploit SimpleHelp RMM Flaws for SYSTEM Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 00:11:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2024_57726 #DragonForce #Medusa #MSP #ransomware #RMM #SimpleHelp #SupplyChain #SystemAccess
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 00:11:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2024_57726 #DragonForce #Medusa #MSP #ransomware #RMM #SimpleHelp #SupplyChain #SystemAccess
Daily CyberSecurity
MSP Nightmare: Medusa & DragonForce Exploit SimpleHelp RMM Flaws for SYSTEM Access
Medusa & DragonForce RaaS groups weaponize SimpleHelp RMM flaws (CVE-2024-57726/7/8) to gain SYSTEM-level access to customer networks. Immediate patch needed.
⤷ Title: DragonForce Ransomware Evolves with BYOVD to Kill EDR and Fixes Encryption Flaws in Conti V3 Codebase
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 00:00:29 +0000
════════════════════════
⌗ Tags: #Malware #BYOVD #Conti V3 #cybersecurity #DragonForce #EDR Bypass #MinGW #RaaS #vulnerable driver
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 00:00:29 +0000
════════════════════════
⌗ Tags: #Malware #BYOVD #Conti V3 #cybersecurity #DragonForce #EDR Bypass #MinGW #RaaS #vulnerable driver
Daily CyberSecurity
DragonForce Ransomware Evolves with BYOVD to Kill EDR and Fixes Encryption Flaws in Conti V3 Codebase
The Acronis Threat Research Unit (TRU) has identified a new DragonForce ransomware variant that showcases a dramatic evolution in both technical sophistication and organizational structure. The up…
⤷ Title: A Desperate Cartel: Inside the Unlikely Alliance of Qilin, DragonForce, and a Fading LockBit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 00:43:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #Cybercrime Cartel #data extortion #DragonForce #LockBit #Operation Cronos #Qilin #RaaS #ransomware #Yarix Intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 23 Dec 2025 00:43:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #Cybercrime Cartel #data extortion #DragonForce #LockBit #Operation Cronos #Qilin #RaaS #ransomware #Yarix Intelligence
Daily CyberSecurity
A Desperate Cartel: Inside the Unlikely Alliance of Qilin, DragonForce, and a Fading LockBit
In a digital underworld increasingly fractured by law enforcement takedowns and eroding trust, three of the most notorious ransomware groups have allegedly joined forces. A new report by the Yarix…
⤷ Title: DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:42:44 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #Conti #Cyber Cartel #decryptor #DragonForce #infosec #LockBit 3.0 #Malware Analysis #RansomBay #ransomware #S2W
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:42:44 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #Conti #Cyber Cartel #decryptor #DragonForce #infosec #LockBit 3.0 #Malware Analysis #RansomBay #ransomware #S2W
Daily CyberSecurity
DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA
A comprehensive new analysis by security researchers at S2W details the inner workings of the DragonForce Ransomware Group, revealing a threat actor that is not only deploying sophisticated malwar…
⤷ Title: The “Godfather” of Ransomware: Inside DragonForce’s Brutal Rise and the New Cyber-Cartel Era
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 07:48:16 +0000
════════════════════════
⌗ Tags: #Malware #cartel model #Cybereason #data audit service #DragonForce ransomware #dual_extortion #RaaS #RansomHub #Ransomware_as_a_Service #Scattered Spider #Tech News 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 07:48:16 +0000
════════════════════════
⌗ Tags: #Malware #cartel model #Cybereason #data audit service #DragonForce ransomware #dual_extortion #RaaS #RansomHub #Ransomware_as_a_Service #Scattered Spider #Tech News 2026
Penetration Testing Tools
The "Godfather" of Ransomware: Inside DragonForce’s Brutal Rise and the New Cyber-Cartel Era
The DragonForce ransomware syndicate has, in a mere biennium, ascended from obscurity to become a preeminent predator within
⤷ Title: VIPERTUNNEL Hijacks Python for Stealthy Ransomware Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 07:16:49 +0000
════════════════════════
⌗ Tags: #Malware #Base85 Obfuscation #cybersecurity #DragonForce Ransomware #EvilCorp #infosec #Malware Analysis #Python backdoor #sitecustomize.py #SOCKS5 Proxy #UNC2165 #VIPERTUNNEL
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 07:16:49 +0000
════════════════════════
⌗ Tags: #Malware #Base85 Obfuscation #cybersecurity #DragonForce Ransomware #EvilCorp #infosec #Malware Analysis #Python backdoor #sitecustomize.py #SOCKS5 Proxy #UNC2165 #VIPERTUNNEL
Daily CyberSecurity
VIPERTUNNEL Hijacks Python for Stealthy Ransomware Access
InfoGuard unmasks VIPERTUNNEL, a Python backdoor using sitecustomize.py for stealthy persistence in DragonForce ransomware attacks. Learn how to detect it.
⤷ Title: The 0APT “Doxxing” Campaign That’s Tearing the Ransomware Underworld Apart
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 09:11:50 +0000
════════════════════════
⌗ Tags: #Cybercriminals #0APT #Barricade Cyber Solutions #cyber extortion #Dark Web #Doxxing #DragonForce #Infosec News #Krybit #ransomware #threat intelligence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 09:11:50 +0000
════════════════════════
⌗ Tags: #Cybercriminals #0APT #Barricade Cyber Solutions #cyber extortion #Dark Web #Doxxing #DragonForce #Infosec News #Krybit #ransomware #threat intelligence
Penetration Testing Tools
The 0APT "Doxxing" Campaign That’s Tearing the Ransomware Underworld Apart
A rare internecine conflict has erupted within the dark web’s underbelly, as one ransomware syndicate has chosen to
⤷ Title: DragonForce Ransomware Abused Microsoft Teams to Hide Malware Activity
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 12:34:24 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Malware #backdoor #BYOVD #Cyber Attack #Cybersecurity #DragonForce #Microsoft #Microsoft Teams #Privacy #Ransomware #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 18 Jun 2026 12:34:24 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Malware #backdoor #BYOVD #Cyber Attack #Cybersecurity #DragonForce #Microsoft #Microsoft Teams #Privacy #Ransomware #Vulnerability
Hackread
DragonForce Ransomware Abused Microsoft Teams to Hide Malware Activity
DragonForce ransomware abused Microsoft Teams relay systems to hide a custom backdoor, steal files and encrypt systems at a US services firm.