TGViewer
Group-IB Group-IB @group_ib · 2.55K subscribers
Post #998 248
🚨Operation KillSwitch, led by German authorities, with support from Europol and Eurojust, has taken action against KillSec, a ransomware-as-a-service group linked to around 1,000 suspected attacks worldwide.

Key Highlights:
🔹 274 organizations were publicly claimed as victims on KillSec’s leak site.
🔹 Around 35% of identified victims were in North America, 30% in Asia-Pacific, and 14% in Europe
🔹 Financial services, healthcare, and government were among the most affected sectors
🔹 The group operated a fully functional affiliate platform with ransom negotiation and payment handling capabilities, payload configuration for Windows and VMware ESXi environments, a Tor-based DLS, and more

Group-IB supported the international Operation KillSwitch with investigative intelligence on KillSec’s operations, infrastructure, and key enablers.

Read the full press release to learn more.

#CyberSecurity #Ransomware #OperationKillSwitch
  • 🔥 8
  • ❤ 4
More from @group_ib
  1. Oct 1, 2026🛍️That “too good to be true” deal could be the lure. Milk Dragon, also known as NaiLong,…
  2. Oct 1, 2026🏦 There's a stage in every major fraud that belongs to no one in your bank. Not the cyber…
  3. Sep 23, 2026🚨Group-IB researchers have uncovered RemControl, a previously undocumented Android bankin…
  4. Sep 17, 2026🚨Group-IB Threat Intelligence has uncovered 29 new samples linked to the HEAVYGRAM and CR…
  5. Sep 14, 2026🚨 Inside the Smishing Triad’s Phishing Cockpit Group-IB’s latest research dives into JWR,…
  6. Sep 9, 2026🚨 Group-IB uncovers Vwork, a weaponized fork of the open-source Android app cloner Shelte…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →