The infamous Black Basta ransomware group is focusing on organizations around the globe. The gang was beforehand recognized for first bombarding its victims with spam emails. The hackers then pretended to be IT help to achieve entry to programs. This methodology has now apparently been additional developed.
Safety researchers at ReliaQuest just lately found that Black Basta is now utilizing Microsoft Groups chat messages to interact potential victims in conversations. On this methodology, too, the attackers disguise themselves as assist desk staff. In keeping with the analysis report, contact is usually made through invites to MS Groups group chats.
Within the chats, the criminals then trick customers into clicking on QR codes that result in a fraudulent web site. The fraudulent websites are tailor-made to the goal group and may usually solely be distinguished from real firm websites by rigorously checking the subdomain.