The top of the cybercriminal pyramid is represented by the #market for zero-days. It is an extremely expensive and competitive one, and it's usually been a prerogative of state-sponsored threat groups. However, certain high-profile cybercriminal groups (read: #ransomware gangs) have amassed incredible fortunes and can now compete with the traditional buyers of #0days exploits. During our investigation for this research piece we've noticed cybercriminals discussing ideas for an Exploit-as-a-Service #business model that would inevitably lower the barrier for accessing sophisticated #exploits. #vuln #cyber #threats #informatique