Weex The Gentlemen Ransomware Group Expands Operations with New Tools
Article Content
- •The Gentlemen ransomware group has evolved with new custom-built malware tools.
- •They primarily exploit internet-facing services and compromised credentials for initial access.
- •The group is expanding its operations across multiple industries, indicating a growing threat.
Kaspersky's research reveals that The Gentlemen ransomware group, active since mid-2025, is expanding its operations with new custom-built malware tools. This group targets various industries, including healthcare and finance, primarily exploiting internet-facing services and compromised credentials for initial access. Their tactics include deploying a sophisticated backdoor for reconnaissance before ransomware execution, indicating a high level of sophistication. The group has also developed a new ransomware variant focused on Windows systems, suggesting ongoing refinement of their capabilities. Kaspersky reported that The Gentlemen attempted to disable their security solutions during attacks, although these efforts were thwarted. The evolving nature of this group poses a significant threat to organizations globally, with expectations of increased attacks in the near future.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Akira and Sonicwall in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Chinese Smishing Gang Targets Ireland and Four Other EU Countries Ireland is identified as one of five EU countries targeted by the Chinese text-scam group known as Smishing Triad, as reported by the EU cyber security agency Enisa. This group conducts large-scale smishing operations, which involve sending fraudulent text messages that impersonate legitimate organizations to steal…
Network Segmentation Failures Heighten Cyberattack Risks in 2026 Forescout's analysis of 47,700 network segments across 209 organizations reveals significant network segmentation failures, particularly involving IT, OT, IoT, and IoMT devices. The study found that 62% of segments contained only one device category, while 29% had two and 9% had three or more. Notably, only 13% of…