Who are REvil?

Last updated on November 10, 2021



The name REvil comes from "Ransomeware Evil". REvil have also been known as Sodinokibi.

REvil are a group that provide ransomware, and look for hacking groups that will use their ransomware to hold to ransom businesses that they hope to extract large amounts of money from.


REvil is considered a ransomware-as-a-service organization as they allow other entities to use their ransomware with the goal of splitting the profits (ransom payments) in return for use of their software.

REvil has been behind some of 2020 and 2021's noteworthly attacks that made news headlines, including the Kaseya VSA Attack of July 2021, the JBS Foods Attack of May 2021, and it's believed there are links with Dark Side who the Federal Bureau of Investigations (FBI) confirmed were responsible for the Colonial Pipeline networks attack of May 2021.
Copyright © 2018 to 2021 Cyber Defense Trends

PRIVACY No personal data shared through this site will ever be disclosed or shared to any third party. We welcome guest posts and feedback.