安全终端 // 机密文件查看器 v3.1.7
[SYS] 正在验证授权码: 5FC9 ... [有效]
[SYS] 正在解密文件档案 ... [OK]
[SYS] 授权级别 7 — 限制访问
[SYS] 会话已记录。监控已激活。请勿复制或分发。
[SYS] 正在渲染文件 ...
机密 — LEVEL 7 需要授权
文件编号: FZ-5FC9-2026
日期: 2026-05-13
部门: CRYPTOGRAPHIC OPERATIONS BRANCH
状态: 活动 -- 请勿分发
INCIDENT REPORT 5FC9 -- GENTLEMEN LEAK
For thirty years we have been guessing what the inside of a ransomware operation looks like.
The Gentlemen's backend is gone from the internet now. The ████████████████████████████████████████████████████████████████████████████████
We could see the outside. The ransom notes. The leak sites. The wreckage in hospitals and factories and school districts. From that we built a picture — informed, careful, and still fundamentally a reconstruction. An outline drawn around a hole.
The people encrypting hospitals are not exceptional. They are employees ████████████████████████████████████████████████████████████████████████████████
One of the most active ransomware operations on Earth got breached. Not raided by police. Breached — by somebody else, through a weakness in their own supplier. Their back office spilled open: the chat logs, the staff roster, the ransom negotiation transcripts, the discussions about which tools to buy.
RECOMMENDATION: Maintain active monitoring of the named entities and systems. Refer requests for declassified detail to the Office of Operations. Fragment Zero.

// 目击报告提交
如果您有与此文件相关的信息,请在下方提交您的陈述。所有提交均受监控。
特工代号
事件报告 / 理论