logo

REvil Ransomware: What’s Next?

ID: 5e06e237-6859-5379-95d0-cf394c693a97

STIX ID: report--5e06e237-6859-5379-95d0-cf394c693a97

Feed Name: ReliaQuest Blog

Threat Score
90/100

Date Published: 2021-07-15

Date Updated: 2026-04-29

...
...

This blog post reviews REvil (Sodinokibi) ransomware activity and history, details notable operations (JBS, Kaseya, Acer, etc.), explains the ransomware-as-a-service model and extortion via a public leak site, and discusses the July 2021 Kaseya supply-chain incident where a reported zero-day and other CVEs were weaponized to impact roughly 1,500 customers, while exploring possible causes for the group's temporary disappearance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.