Internet

Fake Ransom Gang Targets US Firms With Data Leak Threats

In the USA, security researchers are drawing attention to a phenomenon that cybercriminals use to cash in: it is about faking a security incident. Companies are being blackmailed without there actually being a break-in into their systems.

This is reported by the Bleeping Computer. This is not necessarily a new scam, but a trick that is currently increasingly coming to light. The people behind it are known as the Silent Ransom Group, according to security specialists at Kroll.

Companies are confronted with blackmail letters of the kind known from hacker attacks. Strangers threaten to publish company data that they do not actually have. But companies still fall for it in droves.

Just Empty Threats

Taking advantage of data breaches and ransomware incidents, such extortionists give priority to threatening companies with publishing or selling allegedly stolen data if not paid. Sometimes these cyber criminals also threaten a DDoS attack if their victims do not follow the instructions.

Bleeping Computer also discovered that some of the blackmail letters were a wild mix of different ransomware campaigns and also named different hacker groups as initiators.

It is “a new wave of fake extortion attempts,” the Kroll analysts write in a security report, adding that the names of well-known cybercriminals are being used to intimidate victims and lend legitimacy to the threat.

“This method is cheap and can easily be performed by low-skilled attackers. Similar to the 419 wire transfer scam, victims are socially engineered by pressuring them to pay by a specified time limit. We assume that this trend will continue indefinitely due to its cost-effectiveness and ability to continue to generate revenue for cybercriminals,” Kroll writes.

Previous fraud cases known

Kroll has observed such incidents since 2021 but also reports similar threats where non-paying victims then later experienced mild DDoS attacks. However, these were low-level DDoS attacks that came with the threat of larger attacks if the extortionists were not paid. However, it is still believed that this is a scam that should be ignored. The recommendation is to carefully analyze such emails in order to identify them as “phantom incidents” and dismiss them as empty threats.

Recent Posts

Austin Fence Installation Contracts: 12 Clauses Homeowners Should Check in 2026

A fence proposal becomes useful only when it explains what will be built, who owns…

14 hours ago

Mouse for MMO players: Razer’s new Naga V3 Pro is a button monster

Razer is launching a new MMO mouse with the Naga V3 Pro. Three magnetic side…

2 days ago

Surface Phone: New images show discarded Microsoft prototype

It's an open secret that Microsoft was working on a Windows Phone smartphone long before…

2 days ago

How Solar Carport Structures Are Changing the Future of Sustainable Energy Infrastructure

As the demand for renewable energy continues to grow, businesses, municipalities, and property owners are…

2 days ago

What to do to find the right family law support in your case.

Family law issues seldom come at an opportune moment. Divorce, separation, parenting conflicts, child support,…

2 days ago

Claude AI data leak: Private chats were freely accessible on Google

Due to an insufficiently protected sharing function, private chat logs from the Anthropic AI Claude…

2 days ago