SECURITYBLEEPING COMPUTER
AI-built ransomware toolkit automates EDR evasion, AD discovery
A threat actor is using an AI-built ransomware toolkit that automates Active Directory discovery and helps evade endpoint detection and response (EDR) solutions.
Mentioned
Related Signal
Adjacent reporting
- Payouts King ransomware uses QEMU VMs to bypass endpoint security
- Threat actor uses Microsoft Teams to deploy new “Snow” malware
- Trigona ransomware attacks use custom exfiltration tool to steal data
- SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware Operation
- Microsoft Takes Down Malware-Signing Service Behind Ransomware Attacks
- CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor Downloads