logo

Silent Ransom Group Threatens US Law Firms With LEAKEDDATA Data Leak Site

ID: da13665e-83d0-563b-b55a-860d988a6bfe

STIX ID: report--da13665e-83d0-563b-b55a-860d988a6bfe

Feed Name: Cyber Press

Threat Score
78/100

Date Published: 2026-06-16

Date Updated: 2026-06-16

Author: Varshini

...
...

UNC3753 (also tracked as Silent Ransom Group / Luna Moth / Chatty Spider) is conducting an active financially motivated campaign (Jan–May 2026) against US law firms and financial services that emphasizes pure data-theft extortion rather than ransomware. The group uses sophisticated social-engineering and physical intrusions — hijacking BYOD endpoints to access corporate VDIs, crawling document management systems (e.g., iManage) for sensitive records, and exfiltrating data via WinSCP, cloud storage, or removable USBs — then issues aggressive three-day extortion ultimatums; the report includes mitigation guidance and three IPv4 IOCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.