Joint Cybersecurity Advisory - AA21-265A: Conti Ranswomware TLP:WHITE
ID: 12f5636e-e923-4b0d-9a7d-710a64130eac
STIX ID: report--12f5636e-e923-4b0d-9a7d-710a64130eac
Threat Score
0/100
Uploaded: 2026-09-16
Published Date: 2022-03-09
Last Modified Date: 2022-03-09
Created by: dogesec
TLP:CLEAR
...
...
A joint CISA/FBI/NSA advisory on Conti ransomware describes the actors, their techniques and typical attack chain (initial access via phishing and compromised credentials, use of TrickBot and Cobalt Strike, lateral movement, encryption, data exfiltration, and double extortion), and provides indicators of compromise, ATT&CK mappings, and recommended mitigations such as MFA, network segmentation, patching, endpoint detection and response, and incident response guidance.
