Tuesday, August 16, 2022
HomeInformation SecurityUS provides reward “as much as $10 million” for details about the...

US provides reward “as much as $10 million” for details about the Conti gang – Bare Safety


You’ve virtually actually seen and heard the phrase Conti within the context of cybercrime.

Conti is the title of a well known ransomware gang – extra exactly, what’s often called a ransomware-as-a-service (RaaS) gang, the place the ransomware code, and the blackmail calls for, and the receipt of extortion funds from determined victims are dealt with by a core group…

…whereas the assaults themselves are orchestrated by a loosely-knit “staff” of associates who’re usually recruited not for his or her malware coding talents, however for his or her phishing, social engineering and community intrusion expertise.

Certainly, we all know precisely the form of “expertise”, if that’s an appropriate phrase to make use of right here, that RaaS operators search for of their associates.

About two years in the past, the REvil ransomware gang put up a cool $1,000,000 as entrance cash in an underground hacker-recruiting discussion board, making an attempt to entice new associates to hitch their cybercriminal capers.

Associates usually appear to earn about 70% of any blackmail cash that’s in the end extorted by the gang from any victims they assault, which is a major incentive not solely to go in laborious, however to go in broad and deep as nicely, attacking and infecting total networks in a single go.

The attackers usually additionally select a intentionally tough time for the corporate they’re attacking, reminiscent of within the early hours of a weekend norning.

The extra utterly a sufferer’s community will get derailed and disrupted, the extra probably it’s that they’ll find yourself caught with paying to unlock their treasured information and get the enterprise working once more.

As REvil made clear after they spent that $1 million “advertising and marketing finances” on-line, the core RaaS crew was in search of:


   Groups that have already got expertise and expertise in penetration 
   testing, working with msf / cs / koadic, nas / tape, hyper-v 
   and analogues of the listed software program and gadgets.

As you’ll be able to think about, the REvil gang had a particular curiosity in applied sciences reminiscent of NAS (networked hooked up storage), backup tape and Hyper-V (Microsoft’s virtualisation platform) as a result of disrupting any current backups throughout an assault, and “unlocking” digital servers to allow them to be encrypted together with the whole lot else, makes it tougher than ever for victims to get well on their very own.

Should you undergo a file-scrambling assault solely to find that the criminals trashed or encrypted all of your backups first, then your major path to self-recovery would possibly nicely already be destroyed.

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -
Google search engine

Most Popular

Recent Comments