CISO Security Intel

Ransomware rapid extortion & backup sabotage

Ransomware rapid extortion & backup sabotage

Key Questions

Which ransomware groups are currently active according to the highlight?

Gentlemen, Qilin, and Storm-1175 are actively conducting operations. ShinyHunters is also linked to a major 275 million record breach at 7-Eleven.

What percentage of attacks involve BEC and vishing techniques?

BEC and vishing account for 61% of the observed attack methods in recent campaigns. These social engineering tactics remain highly effective for initial access.

What controls are recommended to mitigate ransomware threats?

Immutable backups, MFA, EDR, and Zero Trust architectures are advised. These measures help prevent backup sabotage and rapid extortion tactics used by attackers.

Gentlemen/Qilin/Storm-1175 active; ShinyHunters 275M records (7-Eleven breach); BEC/vishing 61%. Controls: immutable backups/MFA/EDR/ZT. Status: developing.

Sources (2)
Updated May 26, 2026
Which ransomware groups are currently active according to the highlight? - CISO Security Intel | NBot | nbot.ai