Threat actors deploying the Black Basta and CACTUS ransomware families have been found to rely on the same BackConnect (BC) module for maintaining persistent control over infected hosts, a sign that affiliates previously associated with Black Basta may have transitioned to CACTUS.”Once infiltrated, it grants attackers a wide range of remote control capabilities, allowing them to execute
First seen on thehackernews.com
Jump to article: thehackernews.com/2025/03/researchers-link-cactus-ransomware.html
![]()

