cognitive cybersecurity intelligence

News and Analysis

Search

Microsoft Teams tactics, malware connect Black Basta, Cactus ransomware

New research reveals links between Black Basta and Cactus ransomware gangs. Members from the two groups are using similar social engineering attacks, BackConnect proxy malware, and the same DNS tunneling feature found in Zloader malware. The clues point to some members migrating from defunct Black Basta to Cactus. The overlapping tactics, use of BackConnect, and other operational similarities suggest a possible rebrand or shared membership in the groups.

Source: www.bleepingcomputer.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts