Browsing: Persistence

Settra is a newly identified ransomware variant first observed in June 2026 that gains access through compromised VPNs or stolen credentials. The threat actors deploy MeshAgent RMM for persistence and use Bring Your Own Vulnerable Driver (BYOVD) techniques to evade security controls. After establishing access, they encrypt files, disable recovery options, and clear Windows event…