How the Conti Ransomware Gang Orchestrates Their Attacks
ID: 9d1daac9-a7d3-5e7e-a426-68f6b6932a87
STIX ID: report--9d1daac9-a7d3-5e7e-a426-68f6b6932a87
Feed Name: ReliaQuest Blog
Threat Score
Executive summary: This report analyzes leaked Conti ransomware manuals and summarizes the gang's end-to-end operational workflow—covering domain and share enumeration, privilege escalation (including Zerologon/PrintNightmare references), persistence options, lateral movement methods, data exfiltration practices, and the final encryption phases—while providing detection opportunities and defensive recommendations for security teams.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
