DarkSide Ransomware Victims Sold Short
ID: 6f7801c4-41ec-5eda-8cc8-12b49c165c15
STIX ID: report--6f7801c4-41ec-5eda-8cc8-12b49c165c15
Feed Name: McAfee Labs Blog
This McAfee technical report analyzes the DarkSide ransomware RaaS, describing its affiliate-driven model, Windows and Linux (including ESXi/NAS) variants, typical intrusion and lateral-movement tools (e.g., Cobalt Strike, Mimikatz, PsExec), data exfiltration and leak site extortion practices, and mitigation/detection guidance; it maps observed behaviors to MITRE ATT&CK techniques and emphasizes rapid encryption and broad sector targeting (notably U.S. critical infrastructure and services).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
