ThreatCluster

DragonForce Ransomware Targets Windows and ESXi Systems

First seen 14 Jan 2026, 20:58 UTC GbhackersCybersecuritynews 52

Article Content

Browse articles
ThreatCluster

DragonForce ransomware has transitioned to Ransomware-as-a-Service (RaaS), targeting Windows and VMware ESXi environments. First identified in December 2023, the group utilizes a dark web blog to pressure victims and advertises stolen data. The operation is characterized by a cartel-style structure.