Dive into the dramatic collapse of the BlackBasta ransomware group, highlighted by leaked internal chats. Discover how Russian military hackers are now targeting the messaging app Signal using QR codes. Learn about the critical Microsoft patch for a Power Pages zero-day vulnerability. Plus, hear about Meta's legal actions against a hacker who extorted users by breaching their accounts. A riveting exploration of cybersecurity challenges and legal battles awaits!
The collapse of the Black Basta ransomware group illustrates how internal conflicts can destabilize even the most organized cybercriminal operations.
Russian military hackers are manipulating Signal's QR code feature to infiltrate Ukrainian government communications, emphasizing the evolving nature of cyber threats.
Deep dives
Collapse of the Black Basta Ransomware Group
The Black Basta ransomware group has recently faced internal conflicts leading to its dissolution, as detailed in a leaked chat revealing almost 200,000 messages from the group's discussions. This leak came after an affiliate of Black Basta attacked a Russian bank, ultimately prompting the fallout within the group, which is an offshoot of the notorious Conti gang established in early 2022. The security firm ProDaft indicated that Black Basta ceased operations earlier this year due to the strife among its members, highlighting the turbulence within ransomware organizations. This situation underscores the fragility of such cybercriminal operations, which can unravel due to internal discord, despite their previously coordinated activities.
Increased Cyber Threats and Vulnerabilities
Russian military hackers, particularly the Sandworm Group, are exploiting Signal's QR code pairing feature to surveil targets, specifically individuals within the Ukrainian government and military. This campaign involves tricking victims into joining group chats that contain malicious QR codes, allowing hackers to take control of the Signal accounts of captured Ukrainian soldiers. Additionally, Microsoft has patched a critical zero-day vulnerability in its PowerPages website builder that allowed unauthorized account registrations, emphasizing the ongoing security issues faced by web services. The risks are compounded by the potential resurgence of older ransomware groups, such as Ghost, which continues to exploit long-standing vulnerabilities in popular platforms like Microsoft Exchange and ColdFusion.
1.
Cybersecurity Breaches and Legal Actions Uncovered
The BlackBasta ransomware group implodes, Russian military hackers target Signal with QR codes, Microsoft patches a Power Pages zero-day, and Meta sues a man who hacked accounts and extorted users.
Show notes
Get the Snipd podcast app
Unlock the knowledge in podcasts with the podcast player of the future.
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode
Save any moment
Hear something you like? Tap your headphones to save it with AI-generated key takeaways
Share & Export
Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode