Threat Advisory: Hackers Are Selling Access to MSPs | Huntress
ID: 3795d23c-91ac-5cf1-8328-4d588e879f0e
STIX ID: report--3795d23c-91ac-5cf1-8328-4d588e879f0e
Feed Name: Huntress Blog
This report highlights the growing role of Initial Access Brokers (IABs) who sell unauthorized access to organizations—including Managed Service Providers (MSPs) with broad customer reach—using buyer-oriented metrics such as access level, geography, revenue, and ransomware insurance. It underscores the specialization of cybercriminal ecosystems separating initial access from ransomware deployment, reducing exposure to law enforcement, and elevating supply chain risk via MSPs. The piece references historical ransomware activity for context and concludes with practical MSP-focused mitigations like MFA, patching, least privilege, segmentation, monitoring, and verified offline backups.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
