Ticker

6/recent/ticker-posts

The reverse of cyber attacks: a leak reveals the private messages of black basta pirates

The reverse of cyber attacks: a leak reveals the private messages of black basta pirates

Black Basta, a hacker gang specializing in ransomware, has just suffered a data leak. An Internet user who calls himself ExploitWhispers has in fact posted the archives of the group's internal discussions on MEGA. Subsequently, he shared the MEGA download link on a Telegram channel.

The revealed files include all conversations between Black Basta members between September 18, 2023 and September 28, 2024. The Internet user explains that he disclosed the private messages "because the group was targeting Russian banks". He did not like that cybercriminals did not spare Russian entities, in support of Russia.

Conflicts within Black Basta

As reported by our colleagues at Bleeping Computer, it is unknown whether ExploitWhispers is a security researcher or a member of the gang, unhappy with the decisions made by his peers. However, PRODAFT researchers reveal that Black Basta is paralyzed by internal struggles for several weeks.

The gang has been “inactive since the beginning of the year due to internal conflicts”, PRODAFT reports on its X account. Under these conditions, everything suggests that the leak comes from one of the gang's cybercriminals, close to Russia.

In the leaked messages, we find a wide variety of data, including message templates used for phishing campaigns, the email addresses used, the addresses of the cryptocurrency wallets supposed to receive the ransoms, login credentials belonging to the victims and several attack tactics. The leak also includes information about some members of the ransomware gang, including administrators.

This is not an unprecedented situation

The leak is reminiscent of an incident that affected Conti, a ransomware gang that disappeared in 2022. That year, the gang's leaders publicly expressed their support for Russian forces during the invasion of Ukraine. This stance was very poorly received by some members of the gang from Ukraine. In response, they shared the group's private internal messages by hacking into its servers. These messages disclosed a mountain of sensitive information about Conti's criminal activities. Shortly after, the gang split up, with several members joining the ranks of Black Basta.

Source: Bleeping Computer

Post a Comment

0 Comments