Qilin (also known as Agenda) is a Rust and Go-based ransomware-as-a-service operation linked to high-impact attacks on healthcare and other critical services.
Key facts
- Associated with a major attack on a UK pathology provider that disrupted hospital services.
- Offers affiliates configurable, cross-platform encryptors.
- Uses double extortion and a leak site to publish stolen data.
- Targets sectors where downtime causes maximum pressure to pay.
Why it matters
Qilin attacks on healthcare show how ransomware translates directly into patient-care disruption. Early exposure detection helps these organisations act before encryption.
How DarkThreatX helps
DarkThreatX monitors dark web leak sites, forums and marketplaces for activity and data tied to your organisation, so you can respond before exposure becomes a breach. Run a free dark web scan or explore the platform.