CYBERSECURITYTRACKER
TRACKING
Permanent story citation

What Are Initial Access Brokers?

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4662

As cited

Copy frozen at (site build).

threat intel

What Are Initial Access Brokers?

Initial access brokers (IABs) are cybercriminals who compromise networks and sell access credentials to other attackers for financial gain. This operational model enables secondary threat actors to bypass initial security barriers and launch follow-on attacks. Organizations face exposure to ransomware, data theft, and other attacks through these broker-facilitated intrusions.

Why it matters: Security teams managing network perimeter and endpoint detection need to understand IAB tactics to spot early reconnaissance and lateral movement that precedes ransomware or data exfiltration campaigns.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary