Microsoft Threat Intelligence Podcast cover image

Microsoft Threat Intelligence Podcast

Black Basta and the Use of LLMs by Threat Actors

Aug 28, 2024
Anna Seitz and Daria Pop, both Microsoft security researchers, delve deep into the world of ransomware and cyber threats. They discuss the Black Basta ransomware group’s evolution from simple phishing to sophisticated social engineering tactics, including malware distribution via Microsoft Teams. The duo highlights the persistence of malvertising and its implications for cybersecurity. They reveal how state-sponsored actors are leveraging large language models, emphasizing the dual nature of AI as both a tool for security and a weapon for attackers.
23:45

Podcast summary created with Snipd AI

Quick takeaways

  • Black Basta has evolved its tactics from phishing to advanced social engineering, demonstrating agility in response to law enforcement actions like the Qakbot takedown.
  • State-sponsored groups like Emerald Sleep are utilizing large language models to enhance their cyber operations, raising concerns about the sophistication of AI-enhanced phishing attempts.

Deep dives

Evolution of BlackBasta's Tactics

BlackBasta has adapted its initial access methods over the years, highlighting a trend of evolving cybercrime techniques. Initially, phishing was the primary access method, involving malicious emails with links or documents that distributed malware like Quackbot. As recent operations unfolded, the group shifted to employing tools like Peekabot and Darkgate, showing agility in response to law enforcement actions like the Quackbot takedown. The latest tactics include complex social engineering strategies using voice phishing and Microsoft Teams to exploit targets, indicating a broader evolution of their operational tactics.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode