<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #RaaS</title><description>Cybersecurity articles tagged #RaaS on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>The Gentlemen Ransomware: Operations, Tools, and Mitigation</title><link>https://runtimerebel.com/blog/the-gentlemen-ransomware-operations-tools-and-mitigation</link><guid isPermaLink="true">https://runtimerebel.com/blog/the-gentlemen-ransomware-operations-tools-and-mitigation</guid><description>Analyzing The Gentlemen (Storm-2697) Ransomware-as-a-Service, its custom tooling, rapid victim surge in 2026, and mitigation.</description><pubDate>Sun, 09 Aug 2026 01:00:32 GMT</pubDate><category>The Gentlemen</category><category>Ransomware as a Service</category><category>RaaS</category><category>Go Based Malware</category><category>Storm 2697</category></item><item><title>Operation Cronos: FBI&apos;s Strategy to Disrupt LockBit Ransomware-as-a-Service</title><link>https://runtimerebel.com/blog/operation-cronos-fbi-s-strategy-to-disrupt-lockbit-ransomware-as-a-service</link><guid isPermaLink="true">https://runtimerebel.com/blog/operation-cronos-fbi-s-strategy-to-disrupt-lockbit-ransomware-as-a-service</guid><description>Analysis of Operation Cronos&apos;s success in disrupting LockBit, focusing on how law enforcement leveraged affiliate trust to dismantle the ransomware giant.</description><pubDate>Mon, 27 Jul 2026 21:13:16 GMT</pubDate><category>LockBit</category><category>Operation Cronos</category><category>Ransomware</category><category>FBI</category><category>Affiliate Trust</category><category>RaaS</category></item><item><title>Gentlemen Ransomware: EDR Evasion Tactics and Mitigation Strategies</title><link>https://runtimerebel.com/blog/gentlemen-ransomware-edr-evasion-tactics-and-mitigation-strategies</link><guid isPermaLink="true">https://runtimerebel.com/blog/gentlemen-ransomware-edr-evasion-tactics-and-mitigation-strategies</guid><description>Runtime Rebel details Gentlemen ransomware&apos;s advanced EDR killer suite, analyzing its impact and providing actionable strategies to defend against sophisticated evasion.</description><pubDate>Fri, 19 Jun 2026 01:11:06 GMT</pubDate><category>Gentlemen Ransomware</category><category>RaaS</category><category>EDR Evasion</category><category>Endpoint Security</category><category>Malware</category></item><item><title>The Gentlemen Ransomware: Worm-like Spread, 478 Victims, RaaS Ties</title><link>https://runtimerebel.com/blog/the-gentlemen-ransomware-worm-like-spread-478-victims-raas-ties</link><guid isPermaLink="true">https://runtimerebel.com/blog/the-gentlemen-ransomware-worm-like-spread-478-victims-raas-ties</guid><description>Analysis of The Gentlemen ransomware reveals its worm-like propagation, double extortion tactics, and operational ties to LockBit, Qilin, and Medusa RaaS schemes…</description><pubDate>Thu, 11 Jun 2026 17:22:43 GMT</pubDate><category>Ransomware</category><category>The Gentlemen</category><category>LockBit</category><category>Qilin</category><category>Medusa</category><category>Double Extortion</category><category>RaaS</category><category>Wormable</category></item><item><title>Identifying The Gentlemen Ransomware: Operations and Tactics</title><link>https://runtimerebel.com/blog/identifying-the-gentlemen-ransomware-operations-and-tactics</link><guid isPermaLink="true">https://runtimerebel.com/blog/identifying-the-gentlemen-ransomware-operations-and-tactics</guid><description>Analysis of The Gentlemen ransomware group, its aggressive 90% affiliate payout model, and investigations into the identity of its primary administrator.</description><pubDate>Thu, 11 Jun 2026 09:40:19 GMT</pubDate><category>The Gentlemen</category><category>Ransomware</category><category>Cybercrime</category><category>RaaS</category><category>Affiliate Marketing</category></item><item><title>Medusa Ransomware: Rapid Vulnerability Weaponization and Analysis</title><link>https://runtimerebel.com/blog/medusa-ransomware-rapid-vulnerability-weaponization-and-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/medusa-ransomware-rapid-vulnerability-weaponization-and-analysis</guid><description>An analysis of Medusa ransomware&apos;s rapid exploitation of vulnerabilities and Zero-Day bugs to exfiltrate and encrypt data within days of initial access.</description><pubDate>Tue, 07 Apr 2026 12:35:57 GMT</pubDate><category>Medusa Ransomware</category><category>RaaS</category><category>Zero Day Exploitation</category><category>Data Exfiltration</category></item><item><title>FortiGate RaaS and Citrix Exploits: Defensive Analysis of New TTPs</title><link>https://runtimerebel.com/blog/fortigate-raas-and-citrix-exploits-defensive-analysis-of-new-ttps</link><guid isPermaLink="true">https://runtimerebel.com/blog/fortigate-raas-and-citrix-exploits-defensive-analysis-of-new-ttps</guid><description>An analysis of the latest ThreatsDay bulletin covering FortiGate RaaS, Citrix exploits, and LiveChat phishing lures targeting perimeter security.</description><pubDate>Thu, 19 Mar 2026 16:24:11 GMT</pubDate><category>FortiGate</category><category>Citrix</category><category>RaaS</category><category>Livechat Phishing</category><category>Mcp Abuse</category></item><item><title>Phobos Ransomware Admin Evgenii Ptitsyn Pleads Guilty to Fraud</title><link>https://runtimerebel.com/blog/phobos-ransomware-admin-evgenii-ptitsyn-pleads-guilty-to-fraud</link><guid isPermaLink="true">https://runtimerebel.com/blog/phobos-ransomware-admin-evgenii-ptitsyn-pleads-guilty-to-fraud</guid><description>Russian national Evgenii Ptitsyn pleaded guilty for his role in administering the Phobos ransomware-as-a-service operation that extorted $16 million.</description><pubDate>Thu, 05 Mar 2026 12:20:01 GMT</pubDate><category>Phobos</category><category>Ransomware</category><category>Evgenii Ptitsyn</category><category>RaaS</category><category>Wire Fraud</category></item></channel></rss>