The Gentlemen ransomware gang is now the second most active by victim count, offering affiliates 90 percent of ransom proceeds. That's not a typo. They're reshaping the economics of extortion, and your team needs to know how to spot their tactics. Here's what I'm seeing across Latin America and the Caribbean that US firms overlook: ransomware ops are becoming hyper-professional. They recruit talent with transparency, use legitimate infrastructure like Microsoft Teams relays to hide C2 traffic, and exploit supply chain dependencies. The DragonForce crew deployed Backdoor.Turn inside Teams relay networks against a major US services firm. Your employees use Teams daily. Your checkout pages load dozens of third-party scripts, each a potential entry point under the new PCI DSS rules. Orphaned AI agents with standing privileges are running wild in most enterprises—your security team probably cannot name who authorized them. I've worked CISO roles in fintech across multiple regions. What separates secure operations from ransomware targets is visibility and control: knowing what's running, who authorized it, and whether it still has reason to exist. The Gentlemen aren't smarter than your team. They're just more organized. How many unknown scripts are loading on your customer checkout pages right now? 🔐 #cybersecurity #fintech #CISO