BreachCensus

blackbasta

First seen April 26, 2022Active525 claimed victims

The claims below are reproduced as posted by blackbasta on its own leak site. Such claims are frequently wrong or exaggerated, and are unverified. Organisations listed here have not been confirmed to have suffered a breach.

Listed organisation? Contact [email protected].

Profile

"Black Basta" is a new ransomware strain discovered during April 2022 - looks in dev since at least early February 2022 - and due to their ability to quickly amass new victims and the style of their negotiations, this is likely not a new operation but rather a rebrand of a previous top-tier ransomware gang that brought along their affiliates.

Description from ransomware.live.

Claimed victims (as posted by the group — unverified)

Victim (as posted)Claimed onSourcePress coverage
Elkuch GroupMay 22, 2022ransomware_live
Contractors Pipe and Supply CorporationMay 19, 2022ransomware_live
Piggly Wiggly Alabama Distributing CompanyMay 16, 2022ransomware_live
Black Bros. Co.May 10, 2022ransomware_live
Flexible Circuit TechnologiesMay 9, 2022ransomware_live
FachgroßhandelMay 9, 2022ransomware_live
CavenderMay 9, 2022ransomware_live
Sole TechnologyMay 5, 2022ransomware_live
Rollecate GroupMay 5, 2022ransomware_live
Zito MediaMay 4, 2022ransomware_live
The Scholz GroupMay 2, 2022ransomware_live
PRGX Global Inc.May 2, 2022ransomware_live
Jameco ElectronicsMay 2, 2022ransomware_live
Ragle IncorporatedApril 28, 2022ransomware_live
Deutsche WindtechnikApril 26, 2022ransomware_live
Basler VersicherungenApril 26, 2022ransomware_live
LACKSApril 26, 2022ransomware_live
IMA Schelling GroupApril 26, 2022ransomware_live
Laiteries Reunies Societe cooperativeApril 26, 2022ransomware_live
LECHLER S.p.A.April 26, 2022ransomware_live
Boswell EngineeringApril 26, 2022ransomware_live
OraliaApril 26, 2022ransomware_live
Plauen Stahl Technologie GmbHApril 26, 2022ransomware_live
TÜV NORD GROUPApril 26, 2022ransomware_live
ADAApril 26, 2022ransomware_live
← NewerPage 6 of 6

Claim data from ransomware.live and RansomLook (CC BY 4.0).