Conti Inc.: Understanding the Internal Discussions of a large Ransomware-as-a-Service Operator with Machine Learning

08/30/2023
by   Estelle Ruellan, et al.
0

Ransomware-as-a-service (RaaS) is increasing the scale and complexity of ransomware attacks. Understanding the internal operations behind RaaS has been a challenge due to the illegality of such activities. The recent chat leak of the Conti RaaS operator, one of the most infamous ransomware operators on the international scene, offers a key opportunity to better understand the inner workings of such organizations. This paper analyzes the main topic discussions in the Conti chat leak using machine learning techniques such as Natural Language Processing (NLP) and Latent Dirichlet Allocation (LDA), as well as visualization strategies. Five discussion topics are found: 1) Business, 2) Technical, 3) Internal tasking/Management, 4) Malware, and 5) Customer Service/Problem Solving. Moreover, the distribution of topics among Conti members shows that only 4 almost all individuals (96 revolve around the five topics. The results also indicate that a significant proportion of Conti discussions are non-tech related. This study thus highlights that running such large RaaS operations requires a workforce skilled beyond technical abilities, with individuals involved in various tasks, from management to customer service or problem solving. The discussion topics also show that the organization behind the Conti RaaS oper5086933ator shares similarities with a large firm. We conclude that, although RaaS represents an example of specialization in the cybercrime industry, only a few members are specialized in one topic, while the rest runs and coordinates the RaaS operation.

READ FULL TEXT
research
04/16/2023

Pitfalls in Effective Knowledge Management: Insights from an International Information Technology Organization

Knowledge is considered an essential resource for organizations. For org...
research
10/02/2021

A Comparative Study of Sentiment Analysis Using NLP and Different Machine Learning Techniques on US Airline Twitter Data

Today's business ecosystem has become very competitive. Customer satisfa...
research
12/18/2020

Technical Progress Analysis Using a Dynamic Topic Model for Technical Terms to Revise Patent Classification Codes

Japanese patents are assigned a patent classification code, FI (File Ind...
research
08/19/2023

Exploring the Power of Topic Modeling Techniques in Analyzing Customer Reviews: A Comparative Analysis

The exponential growth of online social network platforms and applicatio...
research
10/07/2015

Assisting Composition of Email Responses: a Topic Prediction Approach

We propose an approach for helping agents compose email replies to custo...
research
12/08/2020

Discovering key topics from short, real-world medical inquiries via natural language processing and unsupervised learning

Millions of unsolicited medical inquiries are received by pharmaceutical...

Please sign up or login with your details

Forgot password? Click here to reset