Gentlemen EDR Killer Suite Combines HexKiller, ThrottleBlood, and HavocKiller
ID: 0fcb5b51-45e5-52e6-93a1-097e2f08c319
STIX ID: report--0fcb5b51-45e5-52e6-93a1-097e2f08c319
Feed Name: Cyber Press
Threat Score
This report analyzes the Gentlemen ransomware-as-a-service group, its operator-managed EDR-killer suite (GentleKiller) and bundled external killers, rapid weaponization of BYOVD drivers, global victimology driven by FortiGate misconfigurations, and use of double extortion; it includes behavioral TTPs and multiple IoCs (file hashes and filenames) for detection and response.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
