REvil Domains Hijacked, Forum Representative Announces Groupâs Intention to Go Offline
ID: 31a6d87e-838b-502d-972a-97dec067582b
STIX ID: report--31a6d87e-838b-502d-972a-97dec067582b
Feed Name: ReliaQuest Blog
This report outlines REvil (Sodinokibi)'s recent operational disruption: a 17 Oct 2021 forum post from a purported REvil representative claims parts of the group’s landing page/blog backend, backups and Onion service keys were accessed by an unknown third party, prompting a temporary halt and discussion of rebranding; the report also contextualizes REvil’s prior high-impact attacks (Kaseya, JBS), internal controversies, affiliate program issues, and concludes the group is likely to reappear despite reputational damage.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
