Qilin: A Threat Profile

Aliases  Agenda (original name, 2022)  Gold Feather (Secureworks)  Water Galura (Trend Micro)  Get Threat Intel and Security Updates Delivered to Your Inbox.   Profiling  Threat Actor Type: Ransomware-as-a-Service (RaaS) with global affiliate network. ...

DORA Article 9 and the Hypervisor MFA Gap: Are You Fully Compliant?

Most financial institutions have deployed multifactor authentication (MFA) where auditors have traditionally looked for it: VPNs, email, cloud applications. That coverage checks the expected boxes—and for years, it was enough.  But one critical layer is still...

What Is Zero Trust Network Access for ESX?

As ransomware and advanced persistent threats continue to evolve, security teams are facing new security risks tied to the virtualization layer. VMware ESX hypervisors—responsible for running enterprise virtual machines (VMs) and managing the host operating...

Dark Angels: A Threat Profile

Aliases  Dark Angels Dark Angels Team White Rabbit Related Historical Identifiers  MARIO (ESXi) – Babuk-derived ESXi encryptor assessed as part of the Dark Angels lineage  Dunghill – data leak and extortion site branding used in Dark Angels campaign Get...

DarkBit: A Threat Profile

Aliases  DarkBit Ransomware  esxi.darkbit (Linux/ESXi payload name observed in incident response)    Get Threat Intel and Security Updates Delivered to Your Inbox. Profiling  Threat Actor Type: Ransomware operation assessed to function as a politically motivated...

Case Study: Finance

Stopping a Cybersecurity Ripple Effect Without Breaking the Bank Supporting hundreds of downstream institutions means infrastructure failures can have far‑reaching consequences. Learn how this financial organization’s team evaluated ZeroLock’s...