AEZA Group LLC is a Russian bulletproof hosting provider sanctioned for supplying infrastructure that enabled cybercriminal operations. Bulletproof hosting providers occupy the infrastructure layer of the cybercrime ecosystem by offering resilient hosting and related services designed to tolerate or shield malicious activity from disruption and law-enforcement pressure. AEZA Group LLC has been publicly linked to the same broader ecosystem as other sanctioned Russian hosting providers and associated operators involved in supporting ransomware and other criminal services. Individuals connected to later-designated hosting networks have also been linked to AEZA Group LLC, indicating overlap among operators and supporting entities used to sustain illicit infrastructure. High-confidence reporting supports characterization of AEZA Group LLC as a cybercrime-enabling service provider rather than a conventional intrusion set or espionage actor. Its primary role is facilitating malicious operations by others, including ransomware actors, through protected hosting services and related operational support.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
1 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.