#AgendaCrypt
Qilin suspect extradited to Germany, but its affiliates were already riding a Check Point VPN zero-day. https://intel.threadlinqs.com/threat/TL-2026-3004 #ThreatIntel #CVE_2026_50751 #AgendaCrypt #SystemBC
October 7, 2026 at 2:14 PM
Healthcare is ransomware's favorite target - Qilin and Akira walk in through edge devices and stolen sessions. https://intel.threadlinqs.com/threat/TL-2026-3127 #ThreatIntel #CVE_2024_1708 #CVE_2024_55591 #AgendaCrypt
October 9, 2026 at 11:07 AM
Record quarter: Clop is back, hitting PTC Windchill via CVE-2026-12569 as Qilin leads ransomware claims. https://intel.threadlinqs.com/threat/TL-2026-3135 #ThreatIntel #CVE_2026_12569 #CVE_2025_3248 #AgendaCrypt
October 9, 2026 at 12:17 PM
Storm-2570 runs one playbook, then picks its ransomware last: Qilin, DragonForce, Anubis, or BERT. https://intel.threadlinqs.com/threat/TL-2026-2729 #ThreatIntel #AgendaCrypt #DragonForce #anubis
September 28, 2026 at 2:45 AM
Check Point's VPN just gave attackers a way into Security Gateways with zero credentials needed. https://intel.threadlinqs.com/threat/TL-2026-2463 #ThreatIntel #CVE_2026_85102 #CVE_2026_85103 #AgendaCrypt
September 12, 2026 at 2:45 PM
France's dark web activity is exploding - ransomware gangs and pro-Russian hacktivists are both cashing in. https://intel.threadlinqs.com/threat/TL-2026-2564 #ThreatIntel #AgendaCrypt #MedusaLocker #LockBit
September 18, 2026 at 11:51 AM
A ransomware gang claims it breached the ATF. No proof shown - but the agency confirms a real incident. https://intel.threadlinqs.com/threat/TL-2026-2201 #ThreatIntel #AgendaCrypt #Agenda #wikileaksv2
August 29, 2026 at 7:43 AM
Qilin ransomware claims it breached a DOJ ATF system holding files on active investigation targets. https://intel.threadlinqs.com/threat/TL-2026-2192 #ThreatIntel #AgendaCrypt #Agenda #MimiKatz
August 28, 2026 at 9:08 PM
Blanket patch cycles can't outrun AI-assisted exploitation anymore, Rapid7 warns. https://intel.threadlinqs.com/threat/TL-2026-2058 #ThreatIntel #AgendaCrypt #DragonForce #Qilin
August 18, 2026 at 2:40 PM
A hospital system shut most of its doors after a ransom note appeared on its own screens. https://intel.threadlinqs.com/threat/TL-2026-1727 #ThreatIntel #RansomHub #AgendaCrypt #LockBit
July 27, 2026 at 10:46 PM
France is under siege - Qilin ransoms town halls while pro-Russia NoName057 floods EDF and La Poste offline. https://intel.threadlinqs.com/threat/TL-2026-1652 #ThreatIntel #AgendaCrypt #MedusaLocker #LockBit
July 23, 2026 at 8:14 AM
AI is now writing exploits faster than defenders can patch: 51% more CVEs in just six months. https://intel.threadlinqs.com/threat/TL-2026-1614 #ThreatIntel #AgendaCrypt #Akira #CVESurge
July 22, 2026 at 8:44 AM
Ransomware just shut down Coca-Cola's fairlife US dairy production - no group has claimed it yet. https://intel.threadlinqs.com/threat/TL-2026-1506 #ThreatIntel #AgendaCrypt #Akira #Clop
July 19, 2026 at 6:02 AM
Qilin Ransomware: Custom Rust Loader and Kernel-Level EDR Killer. https://intel.threadlinqs.com/threat/TL-2026-1453 #ThreatIntel #CVE_2025_7771 #AgendaCrypt #Gentlemen
July 17, 2026 at 2:58 PM
SAP just patched 3 critical bugs - one lets an unauthenticated attacker smuggle requests and hijack BTP sessions. https://intel.threadlinqs.com/threat/TL-2026-1302 #ThreatIntel #CVE_2026_44747 #CVE_2026_27690 #AgendaCrypt
July 14, 2026 at 12:03 PM
US and UK sanction the no-log VPN and cryptor sellers that quietly powered the ransomware economy. https://intel.threadlinqs.com/threat/TL-2026-1295 #ThreatIntel #anubis #AgendaCrypt #Sinobi
July 14, 2026 at 10:05 AM