Guilherme Venere from Cisco Talos joins to discuss their research on "A deep dive into Phobos ransomware, recently deployed by 8Base group." Cisco Talos discovered that 8Base\u2019s Phobos ransomware payload contains an embedded configuration, which is a significant difference between 8Base\u2019s Phobos variant and other Phobos samples that have been observed in the wild since 2019.\xa0\nIn this 2-part research series, Talos conducts a deep dive into the Phobos ransomware, including its affiliate structure, activity and capabilities, as well as the one private key that could enable decryption of all the samples analyzed.\xa0\nThe research can be found here:\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\nA deep dive into Phobos ransomware, recently deployed by 8Base group\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\nUnderstanding the Phobos affiliate structure and activity\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\n\nLearn more about your ad choices. Visit megaphone.fm/adchoices