Cobalt Strike takedown effort cuts cracked versions by 80%

Fortra, Microsoft and Health-ISAC partnership reduced unauthorized copies of red team tool over the last two years.
Fortra’s Cobalt Strike has been a widely used weapon for a variety of cybercriminals and nation-state threat actors, who frequently use cracked copies of the red teaming tool to establish command-and-control communications and persistent access inside victim environments.
Fortra, Microsoft’s Digital Crimes Unit (DCU), and Health Information Sharing and Analysis Center (Health-ISAC) formed a partnership two years ago to reduce malicious activity stemming from Cobalt Strike. Those efforts have cut the number of unauthorized copies in the wild by 80%, Fortra said in a blog post last Friday.
Read the article in Cybersecurity Dive. Click Here
- Related Resources & News
- Health-ISAC on Health Stealth Radio – Cross-Industry Collaboration
- Urgent Threat Alert: ShinyHunters Vishing Campaigns and Domain Impersonation
- When Everyone Can Find Your Bugs: Medical Device Security After AI
- AI Agents Are Changing Ransomware Attacks on Healthcare Organizations
- From Metrics to Meaning: Transforming Medical Device Cybersecurity into a Strategic Risk Narrative
- The Prioritization Problem: Why More Findings Don’t Mean Less Risk
- Monthly Newsletter – September 2026
- Health-ISAC ® Invests in APAC with Key Staff Addition in Australia
- Kidney Transplant Registry Hack Raises Safety Concerns
- Health-ISAC Hacking Healthcare 8-26-2026