Skip to content

revil

Inactive

0 tracked victims · First seen Aug 26, 2019 · Last seen Nov 28, 2022

About

Aggregated threat-intel description

Sodinokibi ransomware group also known as REvil (Ransomware Evil) operates as a ransomware-as-a-service (RaaS) model. After the group compromised his victims, they would threaten to publish the victim's sensitive data on their darknet blog named 'Happy Blog', unless the ransom is paid. The ransomware malware code used by REvil is pretty similar to the ransomware code used by DarkSide - a different threat actor. REvil group claims to steal information after a successful attack on the supplier of the tech giant Apple and stole confidential schematics of their upcoming products.

Recent victims

View all →
No recent victims.

All ransomware groups · Dark web intelligence