Introduction
Storm-0826 is a financially motivated cybercriminal group operating as an affiliate within the Black Basta ransomware-as-a-service (RaaS) ecosystem. This actorβs primary known method of obtaining initial access is through handoffs from Storm-0464, a known distributor of the Qakbot malware
Activities and Tactics
Information pending cataloguing.
Notable Campaigns
Information pending cataloguing.
Tactics, Techniques, and Procedures (TTPs)
Information pending cataloguing.
Notable Indicators of Compromise (IOCs)
No curated IOCs are currently published for this actor. This section will be updated when stable, attributable indicators are available.
Malware and Tools
- BlackEnergy
- BLACKCOFFEE
- Blackshades
- BlackNix
- CyberGate
- Cyber Eye RAT
- BlackHole
Attribution and Evidence
Information pending cataloguing.
References
References pending cataloguing.