Research · InfosecFeed Brief
Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across deployments
Research
What you need to know
Storm-2570 is a ransomware affiliate that uses consistent post-compromise tools and techniques across deployments involving Qilin, DragonForce, Anubis, and BERT ransomware, and provides guidance to help defenders detect and disrupt this activity before ransomware deployment. The post Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across…
Source transparency
Read the original report at Microsoft Security Blog ↗
This is an InfosecFeed curated brief based on reporting from Microsoft Security Blog. InfosecFeed does not claim ownership of the original reporting.