A leak from the Black Basta ransomware group has revealed the critical patterns used by its operators, largely involving compromised credentials. This discovery is due to internal conflicts spurred by a retaliatory leak following attacks on Russian banks. Researchers have been able to analyze the leaked data and can offer insights into how the group works and ways to strengthen defenses against similar actions in the future.

Hackers Deliver XWorm via Malicious Registry Files in a New Stegocampaign Attack
A new variant of Stegocampaign has emerged, utilizing a Windows registry file to include a malicious script in Autorun. By exploiting user actions through phishing