{"id":836,"date":"2025-10-27T11:27:14","date_gmt":"2025-10-27T09:27:14","guid":{"rendered":"https:\/\/familiebuckens.nl\/?p=836"},"modified":"2025-10-27T11:27:14","modified_gmt":"2025-10-27T09:27:14","slug":"qilin-ransomware-combines-linux-payload-with-byovd-exploit-in-hybrid-attack","status":"publish","type":"post","link":"https:\/\/familiebuckens.nl\/index.php\/2025\/10\/27\/qilin-ransomware-combines-linux-payload-with-byovd-exploit-in-hybrid-attack\/","title":{"rendered":"Qilin Ransomware Combines Linux Payload With BYOVD Exploit in Hybrid Attack"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The ransomware group known as&nbsp;<a href=\"https:\/\/thehackernews.com\/2025\/06\/qilin-ransomware-adds-call-lawyer.html\" rel=\"noreferrer noopener\" target=\"_blank\">Qilin<\/a>&nbsp;(aka Agenda, Gold Feather, and Water Galura) has claimed more than 40 victims every month since the start of 2025, barring January, with the number of postings on its data leak site touching a high of 100 cases in June.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The development comes as the ransomware-as-a-service (RaaS) operation has emerged as one of the&nbsp;<a href=\"https:\/\/thehackernews.com\/2025\/10\/lockbit-qilin-and-dragonforce-join.html\" rel=\"noreferrer noopener\" target=\"_blank\">most active ransomware groups<\/a>, accounting for&nbsp;<a href=\"https:\/\/www.cyfirma.com\/research\/tracking-ransomware-september-2025\/\" rel=\"noreferrer noopener\" target=\"_blank\">84 victims each<\/a>&nbsp;in the months of August and September 2025. Qilin is known to be active since around July 2022.<\/p>\n\n\n<a class=\"wp-block-read-more\" href=\"https:\/\/familiebuckens.nl\/index.php\/2025\/10\/27\/qilin-ransomware-combines-linux-payload-with-byovd-exploit-in-hybrid-attack\/\" target=\"_self\"><a href=\"https:\/\/thehackernews.com\/2025\/10\/qilin-ransomware-combines-linux-payload.html\">Qilin Ransomware Combines Linux Payload With BYOVD Exploit in Hybrid Attack<\/a><span class=\"screen-reader-text\">: Qilin Ransomware Combines Linux Payload With BYOVD Exploit in Hybrid Attack<\/span><\/a>","protected":false},"excerpt":{"rendered":"<p>The ransomware group known as&nbsp;Qilin&nbsp;(aka Agenda, Gold Feather, and Water Galura) has claimed more than 40 victims every month since the start of 2025, barring January, with the number of postings on its data leak site touching a high of 100 cases in June. The development comes as the ransomware-as-a-service&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[40],"class_list":["post-836","post","type-post","status-publish","format-standard","hentry","category-ransomware","tag-40"],"_links":{"self":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/836","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/comments?post=836"}],"version-history":[{"count":1,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/836\/revisions"}],"predecessor-version":[{"id":837,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/836\/revisions\/837"}],"wp:attachment":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/media?parent=836"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/categories?post=836"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/tags?post=836"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}