revil
Sodinokibi ransomware group also known as REvil (Ransomware Evil) operates as a ransomware-as-a-service (RaaS) model. After the group compromised his victims, they would threaten to publish the victim's sensitive data on their darknet blog named 'Happy Blog', unless the ransom is paid. The ransomware malware code used by REvil is pretty similar to the ransomware code used by DarkSide - a different threat actor. REvil group claims to steal information after a successful…
Tactics: Initial Access, Execution, Defense Evasion, Credential Access, Discovery, Lateral Movement, Exfiltration, Command and Control, Impact
Cached from ransomware.live. 2026-09-19 PT. Leak sites are not linked.

