Phishing remains one of the most persistent and adaptive threats in cybersecurity. It is common and widespread for cybercriminals to impersonate reputable IT companies in phishing campaigns, exploiting the trust these brands have built and thus targeting both affected companies and their customers.
What began as simple social engineering has matured into a complex criminal economy with defined roles, scalable tools, and rapid monetization. Through its continuous monitoring of underground ecosystems, Group-IB’s Threat Intelligence and Investigations team recently uncovered a sophisticated phishing framework that illustrates this evolution in striking detail.
Read more…
Source: Group-IB’
Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox
Related:
- How did a ‘bank snooping’ scandal ensnare politicians in Italy?
October 14, 2024
Italian Prime Minister Giorgia Meloni is at the centre of a “snooping scandal” in which a bank branch employee at Italy’s biggest bank is alleged to have illegally accessed and “spied on” thousands of private accounts. A clerk at Banca Intesa Sanpaolo has been accused of gaining unauthorised access to more than 3,500 accounts belonging to ...
- Sunken superyacht believed to contain watertight safes with sensitive intelligence data
September 21, 2024
Specialist divers surveying the wreckage of the $40 million superyacht that sank off Sicily in August, killing seven people including British tech tycoon Mike Lynch, have asked for heightened security to guard the vessel, over concerns that sensitive data locked in its safes may interest foreign governments, multiple sources told CNN. Italian Prosecutors who have opened ...
- Exotic SambaSpy is now dancing with Italian users
September 18, 2024
In May 2024, kaspersky researchers detected a campaign exclusively targeting victims in Italy. They were rather surprised by this, as cybercriminals typically select a broader target to maximize their profits. What sets this campaign apart is that, at various stages of the infection chain, checks are made to ensure that only Italian users are infected. This ...
- Italy: SYNLAB affected by cyber-attack
April 19, 2024
SYNLAB AG announces that SYNLAB Italy is affected by the consequences of a cyber-attack. As a precaution and in accordance with the SYNLAB IT security procedures, all IT systems in Italy have been immediately deactivated as soon as the attack was identified in the early morning of 18 April 2024. As a result of the incident, ...
- Italy privacy watchdog fines Unicredit $3.1 million for data breach
March 7, 2024
Italy’s data protection authority has fined UniCredit, the country’s second-largest bank, 2.8 million euros ($3.1 million) for a data breach case in 2018 affecting thousands of customers and former customers, it said on Thursday. The bank responded that it would appeal the decision to court, adding that no bank data had been compromised and the incident ...
- Europol: Ragnar Locker ransomware gang taken down by international police swoop
October 20, 2023
This week, law enforcement and judicial authorities from eleven countries delivered a major blow to one of the most dangerous ransomware operations of recent years. This action, coordinated at international level by Europol and Eurojust, targeted the Ragnar Locker ransomware group. The group were responsible for numerous high-profile attacks against critical infrastructure across the world. In ...
