All threat actors

Black Basta

Alert me

A major ransomware and data-extortion operation active from 2022 and associated by Mandiant with UNC4393. It used phishing, social engineering, stolen credentials, edge-device compromise, and access brokers before exfiltrating data and encrypting Windows and Linux/ESXi environments.

Also known as

Black Basta ransomware group
BlackBasta

Create a free account to see the reports

Sign in or create a free account to see every report that names Black Basta.

Create free account