logo

Hackers are knocking on office doors pretending to be IT staff

ID: 1153726a-f6e5-5094-985c-75bd0afba7e9

STIX ID: report--1153726a-f6e5-5094-985c-75bd0afba7e9

Feed Name: Help Net Security

Threat Score
72/100

Date Published: 2026-05-27

Date Updated: 2026-05-27

Author: Sinisa Markovic

...
...

The FBI warns that the Silent Ransom Group (SRG), also known as Luna Moth/Chatty Spider/UNC3753 and active since at least 2022, is targeting law firms (and other sectors) using callback phishing, phone-based social engineering, and even in-person impersonation of IT staff to gain remote or physical access, steal data, and extort victims via ransom demands and leak sites; the group commonly uses legitimate system management and remote-access tools to evade detection. The alert notes few artifacts are left on compromised machines and recommends verifying IT personnel, training against callback phishing, enforcing MFA, restricting unauthorized remote-access tools, and reviewing help-desk procedures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.