~Sophos~
GOLD BLADE evolves to hybrid ops, deploying QWCrypt ransomware and targeting Canadian orgs via recruitment platforms.
-
IOCs: 109. 206. 236. 209, 194. 113. 245. 238, stars. medbury. com
-
#GOLDBLADE #QWCrypt #ThreatIntel
Un groupe de pirates informatiques à louer cible le Canada dans 80 % de ses attaques
moncarnet.com/2025/12/16/u...
#Infosec #Security #Cybersecurity #CeptBiro #GroupeDePirates #Canada #Attaques #GoldBlade #RedCurl #RedWolf #QWCrypt
NEW: The mysterious #RedCurl group, known for targeting the US, Russia and Western Europe, is now deploying new #QWCrypt ransomware in hypervisor attacks.
Read: hackread.com/redcurl-uses...
#CyberSecurity #Ransomware #CyberAttacks
Russian Espionage Group Using Ransomware in Attacks Russian-speaking espionage group RedCurl has ...
www.securityweek.com/russian-espionage-group-...
#Cybercrime #espionage #QWCrypt #ransomware #RedCurl
Event Attributes
RedCurl, also known as Earth Kapre or Red Wolf has been conducting cyber espionage till now and has been found launching ransomware attacks.
#RedCurl #LOTL #Cyberespionage #Ransomware #QWCrypt
RedCurl Shifts from Espionage to Ransomware with First-Ever QWCrypt Deployment reconbee.com/redcurl-shif...
#RedCurl #espionage #ransomware #QWCrypt #ransomwareattack #cyberattacks
QWCrypt è il ransomware usato da RedCurl per attacchi mirati su hypervisor: un’operazione tecnica e silenziosa, con alta personalizzazione.
#crittografiamirata #DLLsideloading #livingofftheland #phishingIMG #QWCrypt #ransomwarehypervisor #RedCurl
www.matricedigitale.it/sicurezza-in...
QWCrypt è il ransomware usato da RedCurl per attacchi mirati su hypervisor: un’operazione tecnica e silenziosa, con alta personalizzazione.
#crittografiamirata #DLLsideloading #livingofftheland #phishingIMG #QWCrypt #ransomwarehypervisor #RedCurl
www.matricedigitale.it/sicurezza-in...
QWCrypt è il ransomware usato da RedCurl per attacchi mirati su hypervisor: un’operazione tecnica e silenziosa, con alta personalizzazione.
#crittografiamirata #DLLsideloading #livingofftheland #phishingIMG #QWCrypt #ransomwarehypervisor #RedCurl
www.matricedigitale.it/sicurezza-in...