Conti, Diavol Ransomware Access-Broker Ops: Google Blows the Lid Off
The Threat Analysis Group (TAG) at Google has offered a unique insight inside the operations of a cybercriminal known as "Exotic Lily," who appears to be an initial-access broker for both the Conti and Diavol ransomware groups.
The group's business-like approach to brokering initial access into companies' networks using a variety of approaches, according to researchers, reveals the group's business-like approach to allowing its partners to engage in additional hostile behavior.
In the post, Google TAG researchers Vlad Stolyarov and Benoit Sevens said, "It's a full-time job." "These groups specialize in breaking into a target in order to open the doors — or the Windows — to the highest-bidding bad actor."Read More