logo

REvil Domains Hijacked, Forum Representative Announces Group’s Intention to Go Offline

ID: 31a6d87e-838b-502d-972a-97dec067582b

STIX ID: report--31a6d87e-838b-502d-972a-97dec067582b

Feed Name: ReliaQuest Blog

Threat Score
75/100

Date Published: 2021-10-19

Date Updated: 2026-04-29

...
...

This report outlines REvil (Sodinokibi)'s recent operational disruption: a 17 Oct 2021 forum post from a purported REvil representative claims parts of the group’s landing page/blog backend, backups and Onion service keys were accessed by an unknown third party, prompting a temporary halt and discussion of rebranding; the report also contextualizes REvil’s prior high-impact attacks (Kaseya, JBS), internal controversies, affiliate program issues, and concludes the group is likely to reappear despite reputational damage.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.