logo

Scattered Lapsus$ Hunters Announce They Are Going Dark but the Threat Remains by Lucie Cardiet

ID: 7d738e05-5a8e-55cc-85f7-6564ac62aa99

STIX ID: report--7d738e05-5a8e-55cc-85f7-6564ac62aa99

Feed Name: Vectra AI Blog

Threat Score
75/100

Date Published: 2025-09-17

Date Updated: 2026-05-01

...
...

This report analyzes 'The Com,' a global, fluid cybercriminal ecosystem (including Scattered Spider, LAPSUS$, ShinyHunters) that leverages social engineering, SIM swaps, SaaS/OAuth abuse, and public data leaks to extort victims; it profiles core factions and actors, cites notable breaches (such as the 19.2M-record Free Mobile incident), and warns defenders to prioritize identity- and SaaS-focused detection over purely malware-centric controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.