


QTOX SECURITY SOFTWARE
The actors discussed the methods they use to compromise a victim’s network once they have gained initial access, including the tools they leverage to bypass cybersecurity software and ensure a long-term, undetected presence in the victim’s network.Īs criminal profits for ransomware attacks grew to nearly $370 million in 2020, the ecosystem of accompanying services and actors continues to undergo greater professionalization.evil_genius expressed reluctance to launch ransomware attacks against other large Taiwanese companies due to Taiwan’s strict anti-money laundering laws, demonstrating that even the most capable hackers find it more difficult to target entities bound by laws that make them less likely to pay a ransom. The REvil affiliate “evil_genius” claimed to be the hacker behind the recent ransomware attacks against Apex America and the Taiwanese-company Quanta Computer.The core reason that ransomware groups are looking for these types of services is that although they are proficient at gaining access to victims and encrypting data, they are less proficient at extracting ransom payments. Ransomware consultants research victims to gather intelligence for realistic ransom demands and conduct the negotiations on behalf of the ransomware group.

A recent “public” dispute on the dark web between actors affiliated with the “REvil” ransomware group and an actor offering to negotiate with victims has shed light on the rise of “ransomware consultants” and revealed the operational methods of ransomware hackers.
