Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure
ID: c42d9c85-dcc9-50a4-9b58-62a6689aa133
STIX ID: report--c42d9c85-dcc9-50a4-9b58-62a6689aa133
Feed Name: Security Affairs
Silent Ransom Group (SRG) — an extortion-focused cybercrime group active since 2022 — has been observed using Fast Flux DNS infrastructure and a botnet of compromised IoT and customer premises devices to increase resilience for data extortion campaigns targeting U.S. law firms and other sectors; Resecurity’s report maps global Fast Flux nodes, links SRG to related underground projects, and echoes FBI and allied agency advisories warning of active targeting and social-engineering/in-person attacks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
