INSIDE QILIN RANSOMWARE AFFILIATE’s PANEL
ID: 641733cf-275a-5623-a034-5d274e4a6eae
STIX ID: report--641733cf-275a-5623-a034-5d274e4a6eae
Feed Name: THE RAVEN FILE
Threat Score
**Qilin ransomware affiliate panel leak:** The report documents a leaked Qilin RaaS affiliate panel and credentials, links the affiliate 'hastalamuerte' to a Themida-packed Mimikatz sample (with hashes and execution parents), highlights use of AD/pen-testing tooling (NetExec) and various offensive tools, notes interest in specific CVEs and cryptocurrency APIs, and provides detection and monitoring recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
