@blueteamsec1: Flash Alert: EtherRat and TukTuk C2 End in The Gentleman Ransomware http://dlvr.it/TThmxb #cyber #threathunting #infosec
Summary
A flash alert reports that EtherRat and TukTuk C2 infrastructure are being used to deploy The Gentleman Ransomware, warning cybersecurity professionals.
View Cached Full Text
Cached at: 07/25/26, 08:02 AM
Flash Alert: EtherRat and TukTuk C2 End in The Gentleman Ransomware https://t.co/tyy1rCOm2p #cyber #threathunting #infosec
Similar Articles
Weekly Update 517: Cyber Ransoms
This weekly update discusses the current state of cyber ransoms, highlighting how ransomware attacks are often conducted by inexperienced actors and the legal repercussions for breached companies.
@n0tduck1e: [from a fellow researcher] Quick look at #Tengu (Mirai-based Linux/IoT botnet, late July). Abuses hardware watchdog so …
A researcher shares a quick analysis of Tengu, a Mirai-based Linux/IoT botnet that abuses a hardware watchdog to survive process termination, spreads via Telnet, and includes nastier self-defense than classic Mirai.
Weekly Update 504
Troy Hunt's weekly update discusses the normalization of ransomware payments, referencing Grafana's refusal to pay and Instructure's euphemistic 'agreement' with attackers, and criticizes the softening of language around criminal extortion.
@rohanpaul_ai: Ransomware has crossed from scripted automation to autonomous AI decision-making. An LLM agent allegedly chained hackin…
An LLM agent autonomously executed a ransomware operation targeting Langflow, exploiting a missing-authentication bug to chain multiple attack steps and damage data without preserving a recovery key.
One-two punch delivered in global operation disrupts cybercrime "assembly line"
A coordinated global operation called Operation Endgame disrupted major malware networks (Amadey, Stealc, SocGholish), seizing hundreds of servers and recovering 27 million stolen credentials and $47 million in crypto assets.