In Other News: Major Law Firm Hacked, Chinese Bank Pays Ransom, PyPI Security Audit

November 17, 2023 at 11:15AM SecurityWeek’s weekly roundup highlights several cybersecurity stories. The world-renowned law firm Allen & Overy experienced a data breach by the LockBit ransomware group. The largest bank in China, Industrial and Commercial Bank of China, allegedly paid a ransom to the LockBit gang. Europol aided in the takedown of a vishing … Read more

FBI pumps ‘significant’ resources into splatting Scattered Spider

November 16, 2023 at 07:19PM The FBI is intensifying efforts to locate members of the Scattered Spider cyber-crime group, responsible for attacking major casinos and conducting network intrusions. The group exfiltrates data and demands payment in exchange for not leaking or selling the information. Several organizations, including MGM Resorts, experienced significant disruptions, resulting in financial … Read more

FBI shares tactics of notorious Scattered Spider hacker collective

November 16, 2023 at 04:56PM The FBI and CISA have released an advisory on the threat actor known as Scattered Spider. They collaborate with the ALPHV/BlackCat Russian ransomware operation and use social engineering, phishing, and SIM swapping to gain network access. The group consists of young English-speaking members and is known to target large organizations. … Read more

Octo Tempest Group Threatens Physical Violence As Social Engineering Tactic

October 27, 2023 at 03:15PM Microsoft’s Incident Response and Threat Intelligence team has labeled Octo Tempest, a financially motivated hacking group, as one of the most dangerous criminal groups. The group has been active since early 2022, initially targeting telecom and outsourcing companies with SIM swap attacks. They later shifted to extortion using stolen data … Read more

Microsoft Warns as Scattered Spider Expands from SIM Swaps to Ransomware

October 26, 2023 at 10:06AM Scattered Spider, a prolific threat actor, is impersonating new employees in targeted firms to infiltrate organizations worldwide. Microsoft describes the group, also known as Octo Tempest, as a dangerous financial criminal group that utilizes SMS phishing, SIM swapping, and help desk fraud to carry out their attacks. Their tactics include … Read more