PULSE NAME
BlackBasta ransomware
WHITE AlienVault 2022-12-02 Modified: 2025-03-23
13
IOCs
MEDIUM VOLUME
Members of the Conti ransomware group appear to have splintered into multiple threat groups including BlackBasta, which has become one of the most significant ransomware threats. ThreatLabz has observed more than five victims that have been compromised by BlackBasta 2.0 since the new version’s release in mid-November 2022. This demonstrates that the threat group is very successful at compromising organizations and the latest version of the ransomware will likely enable them to better evade antivirus and EDRs.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Conti BlackBasta
Indicators of Compromise (1 / 13 total)
All FileHash-SHA256 URL domain FileHash-SHA1 FileHash-MD5
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 5748e201ac18944dd2ae67287944a5ee 2025-02-21