ThreatCluster

Cephalus Ransomware Deployed via Stolen RDP Credentials

First seen 8 Nov 2025, 12:36 UTC GbhackersCyberpressCybersecuritynews 94% similarity 46

Article Content

Browse articles
ThreatCluster

Threat actors are exploiting exposed Remote Desktop Protocol (RDP) credentials to deploy Cephalus ransomware. This attack targets organizations that have not secured their RDP access, leading to potential data breaches and operational disruptions. The exact number of affected entities and the scale of the attack remain unclear.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story