Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

'The Gentlemen' Profile: Why This Ransomware Group Wants In Before It Locks You Out

The Gentlemen is a financially motivated ransomware group that combines data theft with encryption to increase pressure on victims. They first came onto the threat scene in July 2025. Rather than relying on encryption alone, the group exfiltrates sensitive business data before locking files, leaving organizations to deal with both operational disruption and the risk of stolen information being exposed.

Inside the AI-Accelerated Cyber Underground

Cyberattacks take shape long before a breach through exposed systems, vulnerable software, stolen credentials, underground tools, and attacker experimentation. In this webinar, Emma Stevens, Threat Intelligence Researcher at Bitsight, and Qionglu Lei, Senior Product Marketing Manager at Bitsight, explore what Bitsight research reveals about AI-enabled attacker behavior and the changing cyber underground.

New Bitsight Research Shows AI Abuse Is Moving Beyond the Jailbreak Prompt

Jailbreak prompts (i.e. prompts designed to remove or bypass the guardrails and rules that govern AI systems, like LLMs) prompts have been circulating for years. At first, a lot of it was pretty simple: copy a prompt, tell the model to ignore its rules, and see what happens. It was also largely noisy, unverified, and often didn’t work. But the noise was still telling us something. Threat actors were beginning to study AI systems the same way defenders were, and over time, the goal started to change.

Focus on the Threats That Actually Matter to your Organization with Sectoral Intelligence

Not every threat matters equally to every organization. A newly discovered APT or ransomware group targeting European automotive manufacturers is definitely worth paying attention to, especially if you’re in that sector. But if you’re a financial services firm in California, it’s probably not an immediate priority. You might look into it, track its activity, and assess whether it could become relevant.

AI Cyber Readiness for Financial Institutions

Advanced AI models are changing the cyber threat landscape by accelerating vulnerability discovery, exploit development, and attacker decision-making. Regulators like the ECB have made clear: action plans are necessary. Financial institutions need to understand whether their existing cyber risk programs can keep pace, not only across their own attack surface, but across the critical third parties and software dependencies they rely on.

Insurance Is Still in the Crosshairs: What Recent Dark Web Chatter Says About Sector Targeting

Insurance has always been a data-rich industry. But recent threat intelligence makes it clear that attackers are not only going after insurers because they are large organizations. They’re going after them because insurance touches some of a threat actor’s favorite things: money, identity, healthcare, legal claims, third-party relationships, and highly sensitive customer records.

The Invisible Expansion of the Attack Surface: Shadow AI, MCP, and Third-Party Risk

AI adoption is moving faster than most of us anticipated and, more importantly, faster than most organizations can govern it. Organizations are implementing the use of AI-enabled applications, browser extensions, coding assistants, and automated agents to enable employees to work faster. In many cases, these tools are adopted without security review, procurement approval, or a clear understanding of where organizational data is being sent.

Thousands of Exposed Fuel Gauges Just Left the Internet

Most of the exposure research we publish goes one way. We count some category of internet-exposed devices, the number is bigger than you hoped, and it is climbing. Webcams. Industrial control systems. NTP servers old enough to vote. The story is almost always "there is more of this exposed than there should be, and it is getting worse.".

How Bitsight Helps Financial Institutions Align With Bank Negara Malaysia's RMiT Policy Document

Financial institutions are not short on cybersecurity policies, frameworks, or regulatory requirements. Turning those requirements into a living risk management program can be challenging. Organizations need a program that can keep pace as technology environments expand, cloud adoption grows, third parties are added, and external exposures change. Especially as the threat landscape continues to evolve.

The Illusion of AI Containment: Why AI Guardrails Won't Save Your Supply Chain

AI is quickly becoming one of the most useful tools available to security researchers. Its ability to analyze enormous volumes of data, identify vulnerabilities, reconstruct attacks, connect seemingly unrelated signals, and help defenders respond faster than humans could alone is incredibly beneficial.