A ransomware gang that transitions to function as a cyberweapon against a country the US is currently in conflict with is either a geopolitical actor in disguise or someone who watched too many news alerts and made an impulsive product decision? https://arstechnica.com/security/2026/03/self-propagating-malware-poisons-open-source-software-and-wipes-iran-based-machines/
Self-propagating malware poisons open source software and wipes Iran-based machines

Development houses: It's time to check your networks for infections.

Ars Technica