Group-IB Threat Intelligence analyzes HEAVYGRAM, a Telegram-based Windows backdoor attributed with moderate confidence to the Iran-linked threat actor Handala Hack. Active since Fall 2023, it has been ...
Most fraud platforms only see a threat once it becomes a transaction. This guide compares the top 5 fraud prevention platforms for banks and fintechs in 2026, including Group-IB, Feedzai, Sift, ...
This blog provides a deep-dive into the phishing kit created by Chenlun known as the Outsider Phishing Kit. It is a well established kit in the Chinese community with over 267 ready-made phishing ...
Fusion is a capability you mature into, not a team you hire. Here is the honest maturity path, the metrics that fund it, and the on-ramp that costs no headcount, startable this quarter. For ...
The disruption we’re witnessing isn’t because of a new threat category. It is the industrialization of conventional ones. Cybercrime went corporate years ago: affiliate programs, ...
Every security team believes it’s ready for ransomware, until an attack proves otherwise. That gap between belief and reality doesn’t show up in a plan sitting in a drawer; it shows up in the data.
Choose Your Fighter: A New Stage in the Evolution of Android SMS Stealers in Uzbekistan Group-IB analyzes the evolution of Android malware in Uzbekistan, revealing advanced droppers, encrypted payload ...
Please review the following rules before submitting your application: 1. Our main objective is to foster a community of like-minded individuals dedicated to combatting cybercrime and who have never ...
Most institutions manage fraud against the one number guaranteed to understate it: what got reported. Reported fraud is a record of what left the building, confirmed, closed, written off. It is clean, ...
Group-IB Threat Intelligence began investigating Tortoiseshell activity following public reporting by Kaspersky (Securelist). Through enrichment of the reported indicators and our own hunting rules, ...
Anatomy of BraZetsu: How Cybercriminals Fuel the Underground Ecosystem Group-IB uncovers BraZetsu, a new Python-based Windows malware that serves as a master toolkit for Initial Access Brokers and ...
One Adversary, Two Outcomes: The 0.027% Proof One malware campaign, 11,000 compromised devices, two banks with very different outcomes. At the bank with fused defence, fraud succeeded on just 0.027% ...