logo

Joint Cybersecurity Advisory - AA21-265A: Conti Ranswomware TLP:WHITE

ID: 12f5636e-e923-4b0d-9a7d-710a64130eac

STIX ID: report--12f5636e-e923-4b0d-9a7d-710a64130eac

Threat Score

0/100

Uploaded: 2026-09-16

Published Date: 2022-03-09

Last Modified Date: 2022-03-09

Created by: dogesec

TLP:CLEAR
...
...
A joint CISA/FBI/NSA advisory on Conti ransomware describes the actors, their techniques and typical attack chain (initial access via phishing and compromised credentials, use of TrickBot and Cobalt Strike, lateral movement, encryption, data exfiltration, and double extortion), and provides indicators of compromise, ATT&CK mappings, and recommended mitigations such as MFA, network segmentation, patching, endpoint detection and response, and incident response guidance.