ThreatCluster

GOLD BLADE Ransomware Campaign Using QWCrypt Locker Identified

First seen 9 Dec 2025, 16:53 UTC GbhackersCyberpressCybersecuritynews 95% similarity 61

Article Content

Browse articles
ThreatCluster

Between February 2024 and August 2025, Sophos threat analysts identified nearly 40 intrusions linked to the GOLD BLADE ransomware campaign. This campaign utilizes a custom QWCrypt locker for data exfiltration and ransomware deployment, affecting various organizations during this period.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story