{"id":166760,"date":"2024-08-08T08:39:09","date_gmt":"2024-08-08T08:39:09","guid":{"rendered":"https:\/\/securityaffairs.com\/?p=166760"},"modified":"2024-08-08T08:39:11","modified_gmt":"2024-08-08T08:39:11","slug":"blacksuit-ransomware-group-advisory","status":"publish","type":"post","link":"https:\/\/securityaffairs.com\/166760\/hacking\/blacksuit-ransomware-group-advisory.html","title":{"rendered":"FBI and CISA update a joint advisory on the BlackSuit Ransomware group"},"content":{"rendered":"
<\/div>\n

FBI and CISA published a joint advisory on the BlackSuit Ransomware group, the document provides TTPs and IOCs as recently as July 2024.<\/h2>\n\n\n\n

CISA, in collaboration with the FBI, has published a joint advisory on the BlackSuit<\/a> Ransomware group. The advisory includes recent and historically observed tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) related to BlackSuit operation, which rebrands legacy Royal ransomware<\/a>, identified by FBI investigations as recent as July 2024. The BlackSuit ransomware has targeted various critical infrastructure sectors, including commercial facilities, healthcare, government, and manufacturing. The report is part of the #StopRansomware initiative conducted by the US Government, the advisory, originally published on March 2, 2023, has been updated twice:<\/p>\n\n\n\n