I thought I saw this yesterday. 🤔

Halcyon: How One Letter Hid a Ransomware Army https://www.halcyon.ai/blog/how-one-letter-hid-a-ransomware-army-qilin

More:

Infosecurity-Magazine: Researchers Observe Sub-One-Hour Ransomware Attacks https://www.infosecurity-magazine.com/news/researchers-subonehour-ransomware/ #infosec #ransomware #threatresearch #cybercrime

How One Letter Hid a Ransomware Army

Qilin ransomware bypassed Windows Defender and Carbon Black EDR using a one-letter filename trick. It spread to 30 endpoints before Halcyon stopped it cold. Zero encryption.