Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber Attacks
ID: 011f7a4f-13d5-5706-bc4f-d37095b611cf
STIX ID: report--011f7a4f-13d5-5706-bc4f-d37095b611cf
Feed Name: The Hacker News
Microsoft has observed the cybercrime group Scattered Spider expanding its toolkit to include ransomware strains like RansomHub and Qilin; the report links these deployments to complex social-engineering intrusions, targeting (including VMware ESXi), and collaboration/overlap with other financially motivated clusters (Manatee Tempest, Mustard Tempest). It highlights RansomHub’s rebranding origins, related malware such as FakeUpdates and Raspberry Robin, and the broader emergence of new ransomware families, advising organizations to follow credential hygiene, least privilege, and Zero Trust principles.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
