Black Basta and Cactus Ransomware Groups Add BackConnect Malware to Their Arsenal Trend Micro Research, News, Perspectives By: Catherine Loveria Stephen Carbery Jovit Samaniego Adam O'Connor Ian Kenefick Gabriel Cardoso Lucas Silva Jack Walsh 2 March 2025 at 19:00 In this blog entry, we discuss how the Black Basta and Cactus ransomware groups utilized the BackConnect malware to maintain persistent control and exfiltrate sensitive data from compromised machines.
Investigating A Web Shell Intrusion With Trend Microβ’ Managed XDR Trend Micro Research, News, Perspectives By: Stephen Carbery Catherine Loveria Jovit Samaniego Ryan Maglaque Janus Agcaoili 13 January 2025 at 19:00 This blog discusses a web shell intrusion incident where attackers abused the IIS worker to exfiltrate stolen data.