logo

Unmasking BlackBasta: Inside the Ransomware Syndicate’s Leaked Operations

ID: 33e90765-5d02-5886-a531-cd12705c142c

STIX ID: report--33e90765-5d02-5886-a531-cd12705c142c

Feed Name: Kudelski Security

Threat Score
75/100

Date Published: 2025-04-30

Date Updated: 2026-07-22

...
...

The report dissects a leaked Matrix chat from alleged BlackBasta affiliates, revealing their organizational roles, use of proxies and botnet infrastructure, malware families (e.g., Latrodectus, Pikabot, IcedID), detection-evasion techniques (LOLBAS usage, loaders, SOCKS proxies), monetization and laundering practices, and provides IOCs plus YARA rules to aid defenders.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.