In an excellent report from Arctic Wolf, researchers Steven Campbell, CISSP, Akshay Suthar, Connor Belfiore, and the rest of the Arctic Wolf Labs Team cover the #Akira ransomware, which has compromised at least 63 organizations. In an interesting twist made only available due to the #Conti leaks, these researchers were able to analyze Akira and notice some code overlap between the two #ransomware variants. As a bonus, something that I haven't seen done many times but would like to see more, the research team mapped tools that were used to the MITRE ATT&CK. If you are a threat hunting team that prefers to focus on toolsets when planing your hunts, this is a great article to leverage. Enjoy and, as always, Happy Hunting!
Source:
Conti and Akira: Chained Together
https://arcticwolf.com/resources/blog/conti-and-akira-chained-together/