highTaiwanManufacturingREvil
Impact
Tebusan USD 50 juta — terbesar saat itu; data finansial bocor.
Initial vector
REvil via MS Exchange
Malware / tooling
REvil
Lessons learned
- Patch Exchange ProxyLogon
- EDR
- Backup
Eksploitasi MS Exchange dipakai REvil menyerang produsen laptop besar.