THREAT ACTOR: Qilin

Qilin (or the Agenda ransomware group) offers affiliates options to customize configurable binary payloads for each victim, including details such as company ID, RSA key, and processes and services to kill before the data encryption. Additionally, the ransom amount requested is different per company, ranging from US$50,000 to US$800,000.

 

Incidents Associated with this Threat

  • September 10, 2022: Ransomware Attack on ForceNet Communication Platform used by Australian Military

Malware Used by this Threat Actor

  • Agenda

Pin It on Pinterest

Scroll to Top