Cicada3301, a ransomware-as-a-service group, had its affiliate program infiltrated by Group-IB researchers, who subsequently publicized details about the gang’s operations and inner workings. Active since June 2024, the group has attacked 30 victims, primarily in the U.S and U.K. The ransomware shares similarities with the defunct ALPHV/BlackCat ransomware group. Group-IB’s report also highlights Cicada3301’s sophisticated affiliate program, including detailed attack customization and support services.

‘I Am Going Through Hell’: Job Loss, Mental Health, and the Fate of Federal Workers
The mass layoff of federal workers during the Trump administration has led to a wave of mental health issues, with many feeling demoralized, overwhelmed, and