PULSE NAME
LBIOC-20260071 - The Gentlemens Leak
WHITE The Gentlemen AlienVault 2026-05-13 Modified: 2026-05-13
70
IOCs
HIGH VOLUME
The Gentlemen is an active ransomware and extortion operation that emerged publicly in the second half of 2025, rapidly escalating into a high-volume threat actor. The group appears to be a continuation or reorganization of prior ransomware affiliate activity, with reported connections to the Qilin ecosystem and the Russian-speaking actor 'hastalamuerte.' This growth likely reflects existing ransomware experience, affiliate relationships, and access to established resources. Underground sources indicate attempts to sell data allegedly connected to The Gentlemen ransomware activity, though the available information lacks sufficient victim-specific or technical details to confirm authenticity. The operation utilizes SystemBC for command and control communications and deploys ransomware variants targeting both Windows and Linux systems.
Indicators of Compromise (22 / 70 total)
All IPv4 FileHash-MD5 FileHash-SHA1 FileHash-SHA256
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 f4ae5b89db5a6a36dbd98287ab7c860a 2026-05-13
FileHash-MD5 05e9d6d239ea29f0427b02a9bc903be7 2026-05-13
FileHash-MD5 0a454a07e071971832985701bc6e9164 2026-05-13
FileHash-MD5 0b33a1a23b044beb5c9a63aafd35595c 2026-05-13
FileHash-MD5 0f9cd505df07e4ebfff3fe61b689e527 2026-05-13
FileHash-MD5 1cc9ae55b1856e4e9796c73f94c2e683 2026-05-13
FileHash-MD5 1e0f4cd09aa4464179933769b5009251 2026-05-13
FileHash-MD5 30b49ae2f685d4403d3013410f80c2e2 2026-05-13
FileHash-MD5 3b46a729db7ae6af8b19711c9452194d 2026-05-13
FileHash-MD5 408dd6ade80f2ebbc2e5470a1fb506f1 2026-05-13
FileHash-MD5 4200b46a93c6ab059e2b34ce200c4a5b 2026-05-13
FileHash-MD5 4609cbac6772a6c61fcf2745cd3b4362 2026-05-13
FileHash-MD5 5f5bf7fc7a9ac89ce0bbb07bd1160078 2026-05-13
FileHash-MD5 6ae7c9a7ea0b8c40a64225734f6bd01d 2026-05-13
FileHash-MD5 7a89b347beb55f63dbcbcfc0beedbe43 2026-05-13
FileHash-MD5 7b885b446bbd9b450146c88f84c64f30 2026-05-13
FileHash-MD5 7f11809925adc6657e84165fdf780816 2026-05-13
FileHash-MD5 a2a13b8da7370f5f4753d81c7958dfcb 2026-05-13
FileHash-MD5 a88daa62751c212b7579a57f1f4ae8f8 2026-05-13
FileHash-MD5 de1a114a2c5552387a1bbb61501bf129 2026-05-13
FileHash-MD5 ed18c524e930cd1c34614f7cc3051dfc 2026-05-13
FileHash-MD5 ffb6011e7c82355046988166dd896930 2026-05-13