notes
1. Executive summary
GuidePoint Security assesses with moderate confidence that “Ransom Busters” is a ransomware affiliate impersonating a recovery provider to divert payments from victims already
notes
1. Executive summary
On 31 July 2026, the ransomware operator "dragonforce" publicly claimed a victim, Lamont Pridmore, a UK-based chartered accountancy practice operating
notes
1. Executive summary
A GuidePoint Security report details how data-extortion groups — principally FulcrumSec (active since ~September 2025) and DragonForce (active since 2023) — are using LLMs
notes
1. Executive summary
An initial access broker weaponized the CitrixBleed 2 vulnerability in a series of attacks across multiple organizations during the first half of 2026,
notes
1. Executive summary
On 2026-07-07, the ransomware operator "dragonforce" publicly claimed a compromise of hive360.com, a UK-based employment administration and
notes
1. Executive summary
DragonForce ransomware operators have been observed deploying a custom Go-based remote access trojan (RAT) dubbed Backdoor.Turn that tunnels command-and-control