logo

LockBit, Qilin & DragonForce Join Forces in Ransomware 'Cartel'

ID: 538dea56-f91b-5971-a5f9-3f79d2fb7698

STIX ID: report--538dea56-f91b-5971-a5f9-3f79d2fb7698

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2025-10-08

Date Updated: 2026-05-05

Author: Alexander Culafi

...
...

ReliaQuest's Q3 2025 threat report highlights a newly publicized coalition between LockBit, Qilin, and DragonForce that could enable technique, infrastructure, and affiliate sharing—potentially increasing the scale and sophistication of ransomware operations (including renewed risk of double-extortion). The report notes LockBit's recent takedown and reputational issues, past precedents for transformational partnerships, and recommends standard ransomware defenses such as patching, limiting RDP, and using device-based certificates.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.