Retour à la base de rançongiciels
Groupe de rançongiciel
blackbasta
"Black Basta" is a new ransomware strain discovered during April 2022 - looks in dev since at least early February 2022 - and due to their ability to quickly amass new victims and the style of their negotiations, this is likely not a new operation but rather a rebrand of a previous top-tier ransomware gang that brought along their affiliates.
Victimes connues523
Niveau de menace
CRITIQUE
Tactiques, techniques et procédures (TTP)
CredentialTheft
- Mimikatz
DefenseEvasion
- Backstab (Process Explorer driver)
DiscoveryEnum
- AdFind
- Bloodhound
- PSNmap
- PowerView
- SoftPerfect NetScan
Exfiltration
- Qaz[.]im
- RClone
LOLBAS
- BITSAdmin
- PsExec
- Quick Assist
Offsec
- Brute Ratel C4
- Cobalt Strike
- Metasploit
- PowerSploit
RMM-Tools
- AnyDesk
- Atera
- NetSupport
- ScreenConnect
- Splashtop
- +1 de plus
Vérifier si vous êtes touché
Cherchez dans notre base si votre organisation figure sur la liste des victimes de blackbasta.
Essayez maintenantGratuit⌘K
Exemple
score de risque · catégories de menace · sources · ancienneté · confiance — en une requête