Q3 2026 set a ransomware record, and ShinyHunters is extorting without encrypting a single file. https://intel.threadlinqs.com/threat/TL-2026-3183 #ThreatIntel #CVE_2026_12569 #AgendaCrypt #Clop

Q3 2026 set a ransomware record, and ShinyHunters is extorting without encrypting a single file. https://intel.threadlinqs.com/threat/TL-2026-3183 #ThreatIntel #CVE_2026_12569 #AgendaCrypt #Clop
Record quarter: Clop is back, hitting PTC Windchill via CVE-2026-12569 as Qilin leads ransomware claims. https://intel.threadlinqs.com/threat/TL-2026-3135 #ThreatIntel #CVE_2026_12569 #CVE_2025_3248 #AgendaCrypt
Healthcare is ransomware's favorite target - Qilin and Akira walk in through edge devices and stolen sessions. https://intel.threadlinqs.com/threat/TL-2026-3127 #ThreatIntel #CVE_2024_1708 #CVE_2024_55591 #AgendaCrypt
Qilin suspect extradited to Germany, but its affiliates were already riding a Check Point VPN zero-day. https://intel.threadlinqs.com/threat/TL-2026-3004 #ThreatIntel #CVE_2026_50751 #AgendaCrypt #SystemBC
Storm-2570 runs one playbook, then picks its ransomware last: Qilin, DragonForce, Anubis, or BERT. https://intel.threadlinqs.com/threat/TL-2026-2729 #ThreatIntel #AgendaCrypt #DragonForce #anubis
France's dark web activity is exploding - ransomware gangs and pro-Russian hacktivists are both cashing in. https://intel.threadlinqs.com/threat/TL-2026-2564 #ThreatIntel #AgendaCrypt #MedusaLocker #LockBit
Check Point's VPN just gave attackers a way into Security Gateways with zero credentials needed. https://intel.threadlinqs.com/threat/TL-2026-2463 #ThreatIntel #CVE_2026_85102 #CVE_2026_85103 #AgendaCrypt