APT41 group: 4 malicious campaigns, 13 victims, new tools and techniques

Group-IB has released new research on the state-sponsored hacker group APT41. The Group-IB Threat Intelligence team estimates that in 2021 the threat actors gained access to at least 13 organizations worldwide. While analyzing the group’s malicious cam… Continue reading APT41 group: 4 malicious campaigns, 13 victims, new tools and techniques

When Efforts to Contain a Data Breach Backfire

Earlier this month, the administrator of the cybercrime forum Breached received a cease-and-desist letter from a cybersecurity firm. The missive alleged that an auction on the site for data stolen from 10 million customers of Mexico’s second-largest bank was fake news and harming the bank’s reputation. The administrator responded to this empty threat by purchasing the stolen banking data and leaking it on the forum for everyone to download. Continue reading When Efforts to Contain a Data Breach Backfire

Group-IB splits its domestic and international business into two separate companies

Group-IB has completed the first step in a series of actions aimed at separating its Russia and CIS business. Group-IB has just transferred its activities in Russia to a new entity under local management. The company’s global headquarters registe… Continue reading Group-IB splits its domestic and international business into two separate companies

Product showcase: Group-IB Unified Risk Platform

The cyber threat landscape has intensified. Threat actors are organized and professionalized, with ransomware gangs outsourcing the first step of their operations to Initial Access Brokers. This alliance has proven profitable for both sides, as the ill… Continue reading Product showcase: Group-IB Unified Risk Platform

Conti effectively created an extortion-oriented IT company, says Group-IB

In slightly more than a month, the Conti ransomware collective compromised more than 40 companies worldwide, and the fastest attack took only three days, Group-IB’s noted in its latest report detailing the workings of one of the most prolific ransomwar… Continue reading Conti effectively created an extortion-oriented IT company, says Group-IB

Scams account for most of all financially motivated cybercrime

The scam industry is becoming more structured and involves more and more parties divided into hierarchical groups, according to Group-IB. The number of such groups jumped to a record high of 390, which is 3.5 times more than last year, when the maximum… Continue reading Scams account for most of all financially motivated cybercrime

57% of all digital crimes in 2021 were scams

Group-IB shares its analysis of the landscape of the most widespread cyber threat in the world: scams. Accounting for 57% of all financially motivated cybercrime, the scam industry is becoming more structured and involves more and more parties divided … Continue reading 57% of all digital crimes in 2021 were scams

Ransomware still winning: Average ransom demand jumped by 45%

Group-IB unveils its guide to the evolution of threat number one “Ransomware Uncovered 2021/2022”. The findings of the second edition of the report indicate that the ransomware empire kept its winning streak going with the average ransom demand growing… Continue reading Ransomware still winning: Average ransom demand jumped by 45%

308,000 exposed databases discovered, proper management is key

Group-IB carried out a deep dive into exposed digital assets discovered in 2021. During the research, the attack surface management team analyzed instances hosting internet-facing databases. The findings showed that in the second half of 2021, the numb… Continue reading 308,000 exposed databases discovered, proper management is key