Press ESC to close

‘Dark Basin’ hacking group targeted thousands in hack-for-hire scheme

CategoryDetails
Threat ActorsDark Basin
Campaign OverviewHack-for-hire group linked to BellTroX InfoTech Services Pvt Ltd; targeted advocacy groups, journalists, government officials, and industries globally.
Target Regions (Victims)Multiple industries, advocacy groups, journalists, government officials (including U.S.), hedge funds, and campaigns like #ExxonKnew.
MethodologyPhishing campaigns, creating high-quality phishing sites, using subdomains and URL shorteners for targeting individuals and corporations.
Product TargetedEmail accounts, corporate and advocacy group information, and data tied to campaigns like net neutrality and environmental activism.
Malware ReferenceNot specified in this text, primarily phishing-based.
Tools UsedHigh-quality phishing sites, URL shorteners, malicious emails, and well-designed subdomains.
Vulnerabilities ExploitedSocial engineering via phishing emails, reliance on legitimate-looking email templates and landing pages.
TTPsPhishing emails, fake landing pages, use of time-zone manipulation for operational consistency, exploiting trust in professional contexts.
AttributionLinked to BellTroX InfoTech Services Pvt Ltd; evidence connects operations to its owner, Sumit Gupta.
RecommendationsIncrease awareness about phishing campaigns, investigate and prosecute hacking clients, and enforce stricter regulations on hack-for-hire services.
SourceRedcanary

Read full article: https://redcanary.com/news/dark-basin-hacking-group-targeted-thousands-in-hack-for-hire-scheme/

The above summary has been generated by an AI language model

Leave a Reply

Your email address will not be published. Required fields are marked *