RTM – Remote Monitoring & Management (RMM) Tools
Topic: Ransomware Tool Matrix Focus: Remote Monitoring & Management (RMM) Tools An RMM (Remote Monitoring and Management) tool is a type of software used by IT professionals and managed service providers (MSPs) to remotely monitor, manage, and maintain IT systems,…
Topic: Ransomware Tool Matrix
Focus: Remote Monitoring & Management (RMM) Tools
An RMM (Remote Monitoring and Management) tool is a type of software used by IT professionals and managed service providers (MSPs) to remotely monitor, manage, and maintain IT systems, networks, and devices. These tools are designed to improve the efficiency of IT operations by enabling technicians to handle tasks from a centralized location without the need for physical access to client devices.
By operating through legitimate RMM channels, attackers can evade detection by blending in with regular IT activities and potentially bypass security measures due to the elevated privileges these tools provide.
Last Updated: 9/10/2024
Tool Name | Known Threat Actor Usage |
---|---|
Action1 | LockBit, MONTI |
AnyDesk | BlackSuit, Royal, Akira, BlackCat, Karakurt, LockBit, Rhysida, AvosLocker, Conti, Dagon Locker, Nokoyawa, Quantum, Diavol, Trigona, BlackByte, Cactus, Lapsus$, Black Basta, MONTI, DarkSide, RagnarLocker, RansomHub, Everest |
Atera | BlackSuit, Royal, AvosLocker, BianLian, Conti, Hive, Quantum, RansomHub, Black Basta, Everest |
ASG Remote Desktop | Scattered Spider |
GoToAssist | DarkSide, Royal |
ITarian | Scattered Spider |
LogMeIn | BlackSuit, Royal, Trigona |
ManageEngineRMM | Scattered Spider |
N-Able | Scattered Spider, RansomHub |
NetSupport | Cuba, EvilCorp, Black Basta |
PDQ Deploy | AvosLocker |
PowerAdmin | Vice Society |
Radmin | Akira |
RustDesk | Akira, Scattered Spider |
ScreenConnect | Black Basta, BlackCat, LockBit, Scattered Spider, Hive, Trigona, Medusa, Yanluowang, RansomHub |
SimpleHelp | BlackCat |
Sorillus | Scattered Spider |
Splashtop | Black Basta, LockBit, AvosLocker, BianLian, Scattered Spider, Hive, Quantum, Conti, Trigona, RansomHub, Cactus, Everest |
Syncro | Royal |
TacticalRMM | AvosLocker, Scattered Spider |
TeamViewer | LockBit, BianLian, Scattered Spider, Trigona, Yanluowang |
TightVNC | Scattered Spider, DarkSide |
ZohoAssist | LockBit, Scattered Spider |
RELATED
REMCOS Remote Control & Surveillance Software
What Is Remcos? aka: RemcosRAT, Remvio, Socmer Actor(s): APT33, The Gorgon Group, UAC-0050 Remcos (short for Remote Control and Surveillance) is a commercial…
How to Disable Windows CoPilot: A Step-by-Step Guide
Windows CoPilot is Microsoft’s latest AI-powered assistant, integrated directly into Windows 11. It’s designed to help users by providing personalized…
Start The New Year Off The Right Way
It’s our job at Barricade Cyber Solutions to make sure that your data is safe at all times – and…