Blog

REvil Master Key for Kaseya Attack Posted to XSS

Flashpoint analysts have identified a post on the Russian language XSS Forum in which a threat actor operating under the alias of “Ekranoplan” posted a possible master key for REvil in a screenshot on Github.[1]  Thus far, Flashpoint analysts have been able to attribute this key to restoration of data associated with the recent Kaseya ransomware attack, and are exploring whether there is broader applicability. exploring whether there is broader applicability.

Default Author Image
August 10, 2021