logo

Who Runs the Ransomware Group 'The Gentlemen'?

ID: e2ccbf30-21dc-5418-920c-1ec050e6baec

STIX ID: report--e2ccbf30-21dc-5418-920c-1ec050e6baec

Feed Name: CosmicBytez Labs

Threat Score
80/100

Date Published: 2026-06-10

Date Updated: 2026-06-11

...
...

KrebsOnSecurity's investigation profiles 'The Gentlemen,' a rapidly expanding RaaS operation notable for a 90% affiliate payout and selective recruitment of experienced operators; the piece links the group to SystemBC usage, crypto-mixing patterns, and infrastructure overlap with prior ransomware actors, documents their enterprise-focused victimology (Western Europe/North America, manufacturing, professional services, healthcare-adjacent mid-market firms), and provides mitigation priorities including immutable backups, credential hygiene, segmentation, and EDR tuning.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.