Black Basta Ransomware

Black Basta Ransomware: A ransomware gang has created an automated brute-force tool called "BRUTED."

Target: The tool targets VPNs and firewalls, particularly those from SonicWall, Palo Alto, and Cisco.

Automated Attacks: BRUTED automates credential-stuffing and brute-force attacks to gain unauthorized access to systems.

Techniques: It scans publicly exposed devices, executes mass authentication attempts, and uses proxies to avoid detection.

Growing Threat: The tool represents a significant risk for organizations with improperly secured remote access devices.

Difficult to Trace: The use of proxies and password guessing makes these attacks harder to trace and scale efficiently.

Back to blog