Researchers Link CACTUS Ransomware Tactics to Former Black Basta Affiliates

Threat actors discovered using the same BackConnect module in Black Basta and CACTUS ransomware, suggesting a possible transition of affiliates between the two families.

martes, 4 de marzo de 2025 • 1 min read • Q2BSTUDIO Team

Company-Software-Apps

Threat actors deploying the Black Basta and CACTUS ransomware families have been discovered using the same BackConnect BC module to maintain persistent control over infected systems. This finding suggests that affiliates previously linked to Black Basta may have transitioned to CACTUS.

Once attackers manage to infiltrate a system, they gain a wide range of remote control capabilities, allowing them to execute commands and manipulate the compromised system at their convenience.

At Q2BSTUDIO, a company specialized in development and technology services, we are committed to computer security and provide comprehensive solutions to protect our clients' systems against advanced threats. Through security audits, active monitoring, and secure infrastructure development, we help mitigate the risks associated with ransomware attacks and other cyber threats.

Cybersecurity specialists recommend implementing advanced protection strategies, including network segmentation, strict authentication measures, and continuous monitoring to detect and neutralize suspicious activities before they can compromise an organization's security.

A BREAK?

Play for a moment before you go

OUR SERVICES

How we can help you

Do you have a project in mind?

Tell us your vision and we'll turn it into a software solution. Whatever the scope, we make your idea real.