Scattered Spider Resurfaces With Financial Sector Attacks Despite Retirement Claims

The infamous cybercrime gang Scattered Spider has been linked by cybersecurity researchers to a new wave of cyberattacks that target financial systems, raising questions about their claims of staying “dark.”

According to threat intelligence company ReliaQuest, there are signs that the threat actor has turned their attention to the financial industry. This is corroborated by a recent targeted attack into an unidentified U.S. banking institution and a rise in lookalike domains that may be associated with the group and aimed against the industry vertical.

According to the organization, Scattered Spider first obtained access by using Azure Active Directory Self-Service Password Management to reset an executive’s password and social engineer their account.

They then gained access to private IT and security documents, proceeded laterally across the Citrix environment and VPN, and breached the VMware ESXi infrastructure read more about Scattered Spider Resurfaces With Financial Sector Attacks Despite Retirement Claims.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *