G1011 · 15 ATT&CK techniques · 0 correlated reports

EXOTIC LILY

Aliases: None listed

EXOTIC LILY is a financially motivated group that has been closely linked with Wizard Spider and the deployment of ransomware including Conti and Diavol. EXOTIC LILY may be acting as an initial access broker for other malicious actors, and has targeted a wide range of industries including IT, cybersecurity, and healthcare since at least September 2021.

Open interactive actor investigation

ATT&CK techniques

Correlated CTI and IR reports

Continue the investigation