LockBit, Qilin & DragonForce Join Forces in Ransomware 'Cartel'
ID: 538dea56-f91b-5971-a5f9-3f79d2fb7698
STIX ID: report--538dea56-f91b-5971-a5f9-3f79d2fb7698
Feed Name: Dark Reading
ReliaQuest's Q3 2025 threat report highlights a newly publicized coalition between LockBit, Qilin, and DragonForce that could enable technique, infrastructure, and affiliate sharing—potentially increasing the scale and sophistication of ransomware operations (including renewed risk of double-extortion). The report notes LockBit's recent takedown and reputational issues, past precedents for transformational partnerships, and recommends standard ransomware defenses such as patching, limiting RDP, and using device-based certificates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
