logo

Threat Advisory: Hackers Are Selling Access to MSPs | Huntress

ID: 3795d23c-91ac-5cf1-8328-4d588e879f0e

STIX ID: report--3795d23c-91ac-5cf1-8328-4d588e879f0e

Feed Name: Huntress Blog

Date Published: 2024-06-24

Date Updated: 2026-04-28

...
...

This report highlights the growing role of Initial Access Brokers (IABs) who sell unauthorized access to organizations—including Managed Service Providers (MSPs) with broad customer reach—using buyer-oriented metrics such as access level, geography, revenue, and ransomware insurance. It underscores the specialization of cybercriminal ecosystems separating initial access from ransomware deployment, reducing exposure to law enforcement, and elevating supply chain risk via MSPs. The piece references historical ransomware activity for context and concludes with practical MSP-focused mitigations like MFA, patching, least privilege, segmentation, monitoring, and verified offline backups.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.