Threat Group Reynolds Ransomware Group
Threat Type Ransomware with integrated Bring Your Own Vulnerable Driver exploitation
Exploited Vulnerabilities CVE-2025-68947 abuse of the NsecSoft NSecKrnl driver authorisation model
Malware Used Reynolds Ransomware with embedded NSecKrnl.sys kernel driver
Threat Score 🔴 9.1/10 High risk
Last Threat Observation 11 February 2026