logo

Ransomware Gangs Collapse as Qilin Seizes Control

ID: 12a81d85-c187-5d83-9f4f-aaf13a193a89

STIX ID: report--12a81d85-c187-5d83-9f4f-aaf13a193a89

Feed Name: Cybereason Blog

Threat Score
78/100

Date Published: 2025-06-17

Date Updated: 2026-04-27

Author: Cybereason Security Services Team

...
...

This report analyzes a volatile ransomware ecosystem and profiles Qilin, an emerging RaaS operator that uses Rust and C payloads to target Windows, Linux, and virtualization platforms (ESXi/Nutanix), offers advanced affiliate services (encryption modes, network spread, DDoS, legal/media support), and has claimed over 50 attacks and 100 victims; the report provides technical analysis of Windows and Linux samples, IOCs, MITRE mappings, and documents recent defacements, breaches, and absorptions among other ransomware groups.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.