All threat actors

A ransomware-as-a-service operation, also known as Agenda, active since 2022. Its affiliates use data theft and Windows, Linux, or ESXi encryption for double extortion and have targeted enterprises and critical-service organizations worldwide.

Also known as

Qilin ransomware group

Create a free account to see the reports

Sign in or create a free account to see every report that names Qilin.

Create free account