Ransomware Tool Matrix Project Updates: Three Groups To Track
ID: a36b3e2f-ba15-51a2-be43-2c0290497bf3
STIX ID: report--a36b3e2f-ba15-51a2-be43-2c0290497bf3
Feed Name: BushidoToken Blog
Threat Score
This post updates the Ransomware Tool Matrix and Ransomware Vulnerability Matrix with profiles for three active ransomware operations — TheGentlemen, DragonForce, and WarLock — detailing their toolkits, exploited CVEs/zero-days, BYOVD (bring-your-own-vulnerable-driver) techniques to bypass EDR, and focus on internet-facing appliances and admin tooling; it concludes with concrete recommendations for hunting, detection engineering, and patch prioritisation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
