Tootfinder

Opt-in global Mastodon full text search. Join the index!

@adulau@infosec.exchange
2025-02-22 08:36:43

We imported the data from Black Basta Ransomware group leak into AIL and there are many interesting aspects.
The federation network of Matrix servers (see the screenshot) used to communicated among the affiliates/group(s).
Activities in the chat room, especially the daily activity view in AIL. Guessing the location and timezone of groups or affiliates is an endless source of information.
They rely on many open-source and SaaS tools, including Googl…

Lists of Matrix server references involved in the Black Basta ransomware group leak. The data has been imported to AIL.
Activities in the chat room, especially the daily activity view in AIL.
Many interesting correlations with cryptocurrencies, IP addresses, CVE numbers, and chat username relationships (who talks to whom and when).