Research · InfosecFeed Brief

Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across deployments

Research

What you need to know

Storm-2570 is a ransomware affiliate that uses consistent post-compromise tools and techniques across deployments involving Qilin, DragonForce, Anubis, and BERT ransomware, and provides guidance to help defenders detect and disrupt this activity before ransomware deployment. The post Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across…

Source transparency

This is an InfosecFeed curated brief based on reporting from Microsoft Security Blog. InfosecFeed does not claim ownership of the original reporting.

Read the original report at Microsoft Security Blog ↗