Are Former Black Basta Affiliates Automating Executive Targeting?
ID: d4ee23cd-d7ae-5ebb-b8b8-f7ae17ee6eb5
STIX ID: report--d4ee23cd-d7ae-5ebb-b8b8-f7ae17ee6eb5
Feed Name: DataBreaches.Net
Threat Score
ReliaQuest warns that former Black Basta affiliates are evolving the group's social-engineering playbook into a faster, more targeted, and increasingly automated campaign aimed at senior leadership, combining mass email bombing with Microsoft Teams help-desk impersonation to gain remote access and in some cases execute malicious scripts in as little as 12 minutes; this activity follows a leak of Black Basta internal chat logs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
