logo

Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber Attacks

ID: 011f7a4f-13d5-5706-bc4f-d37095b611cf

STIX ID: report--011f7a4f-13d5-5706-bc4f-d37095b611cf

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2024-07-17

Date Updated: 2026-05-08

Author: [email protected] (The Hacker News)

...
...

Microsoft has observed the cybercrime group Scattered Spider expanding its toolkit to include ransomware strains like RansomHub and Qilin; the report links these deployments to complex social-engineering intrusions, targeting (including VMware ESXi), and collaboration/overlap with other financially motivated clusters (Manatee Tempest, Mustard Tempest). It highlights RansomHub’s rebranding origins, related malware such as FakeUpdates and Raspberry Robin, and the broader emergence of new ransomware families, advising organizations to follow credential hygiene, least privilege, and Zero Trust principles.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.