logo

How the Conti Ransomware Gang Orchestrates Their Attacks

ID: 9d1daac9-a7d3-5e7e-a426-68f6b6932a87

STIX ID: report--9d1daac9-a7d3-5e7e-a426-68f6b6932a87

Feed Name: ReliaQuest Blog

Threat Score
78/100

Date Published: 2022-06-13

Date Updated: 2026-04-29

...
...

Executive summary: This report analyzes leaked Conti ransomware manuals and summarizes the gang's end-to-end operational workflow—covering domain and share enumeration, privilege escalation (including Zerologon/PrintNightmare references), persistence options, lateral movement methods, data exfiltration practices, and the final encryption phases—while providing detection opportunities and defensive recommendations for security teams.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.