Minacce · 126 giorni fa
SRG ha spostato la fase di furto fuori dalla rete e dentro l’edificio. Se l’impersonificazione del help-desk fallisce, il gruppo ora invia qualcuno in ufficio per ottenere accesso locale e copiare direttamente i dati, il che fa sì che i controlli di remote-access e l’antivirus non rilevino la vera compromissione.
7 fonti che coprono questa storia
Ransomware Actors Show Up In Person to Steal Law Firm Data
The FBI warned that the extortion gang Silent Ransom Group is targeting law firms and social-engineering its way into servers and databases.
FBI warns US-based law firms to be on the lookout for cybercrime group that steals data in person
Silent Ransom Group isn’t prolific, but it's demonstrated a knack for attacking the legal services sector with an extraordinary dual use of social engineering and in-person visits to victims’ workstations.
Extortion crews are visiting law firms pretending to be tech support, FBI warns
Cybercriminals still allowed to walk into office blocks and convince staff to let them plug in their own thumb drives
Hackers are knocking on office doors pretending to be IT staff - Help Net Security
The Silent Ransom Group is targeting law firms through social engineering attacks involving phishing emails and in-person visits.
The Record from Recorded Future
FBI warns extortion hackers are visiting US law firms to steal data
In a public advisory issued Tuesday the FBI said a hacking group has targeted law firms using social engineering schemes to gain remote access to corporate systems and exfiltrate data.
FBI: Hackers Sending Operatives in Person to Insert USB Drives and Steal Data
The FBI has issued an alert warning of Silent Ransom Group attacks targeting law firms.
FBI warns of in-person data theft attacks from extortion gang
The FBI warned on Tuesday that the Silent Ransom Group (SRG) extortion gang is now targeting U.S.-based law firms in in-person data theft attacks.
Part of the PlainSec briefing for 2026-05-27