logo

DarkSide Ransomware Victims Sold Short

ID: 6f7801c4-41ec-5eda-8cc8-12b49c165c15

STIX ID: report--6f7801c4-41ec-5eda-8cc8-12b49c165c15

Feed Name: McAfee Labs Blog

Threat Score
85/100

Date Published: 2021-05-14

Date Updated: 2026-04-28

Author: Raj Samani

...
...

This McAfee technical report analyzes the DarkSide ransomware RaaS, describing its affiliate-driven model, Windows and Linux (including ESXi/NAS) variants, typical intrusion and lateral-movement tools (e.g., Cobalt Strike, Mimikatz, PsExec), data exfiltration and leak site extortion practices, and mitigation/detection guidance; it maps observed behaviors to MITRE ATT&CK techniques and emphasizes rapid encryption and broad sector targeting (notably U.S. critical infrastructure and services).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.