S0575Windows

S0575Conti

Platforms
1
ATT&CK
14.1
References
4

Description

[Conti](https://attack.mitre.org/software/S0575) is a Ransomware-as-a-Service (RaaS) that was first observed in December 2019. [Conti](https://attack.mitre.org/software/S0575) has been deployed via [TrickBot](https://attack.mitre.org/software/S0266) and used against major corporations and government agencies, particularly those in North America. As with other ransomware families, actors using [Conti](https://attack.mitre.org/software/S0575) steal sensitive files and information from compromised networks, and threaten to publish this data unless the ransom is paid.(Citation: Cybereason Conti Jan 2021)(Citation: CarbonBlack Conti July 2020)(Citation: Cybleinc Conti January 2020)

Platforms· 1

Windows

References

  1. https://attack.mitre.org/software/S0575
  2. https://www.carbonblack.com/blog/tau-threat-discovery-conti-ransomware/
  3. https://cybleinc.com/2021/01/21/conti-ransomware-resurfaces-targeting-government-large-organizations/
  4. https://www.cybereason.com/blog/cybereason-vs.-conti-ransomware

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Campaign
C0015
Software
Black Basta
Software
Coverton
Software
Condi
Software
Egregor
Software
contfr
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.