ForensicsS | Private Detective & Digital Forensics Investigation Experts
  • info@forensicss.com

    Send Email

  • 11400 West Olympic Blvd, Los Angeles, CA 90064

  • Home
  • About Us
  • Services
    • Domestic Investigation
      • Los Angeles Private Eye
      • Infidelity Investigations
      • Asset Investigations
      • Private Detective Orange County
      • Child Custody Investigations
      • Missing Person Locates
      • Wire Fraud
      • Corporate Security Investigations
      • Surveillance Operations
      • Financial Fraud Investigations
      • Asset and Hidden Finances Investigations
      • Bug Sweep TSCM Investigation
    • Cyber Security
      • Cyber Bullying Online Investigation
      • Penetration Testing Service
      • Social Media Monitoring
      • Romance Scam Investigator
      • Cyber Stalking Investigation
      • Crypto Scam Investigation
      • Cyber Security Assessment
      • Cyber Harassment Online Investigator
      • Ransomware Attack Investigation
      • Social Media Investigator
      • Extortion Investigation services
      • Background Screening
      • Insurance Fraud Detective
      • Forensic Accounting
      • Online Identity Theft
      • Online Blackmail
      • Cell Phone Forensics
      • Automotive Forensics
      • Audio Video Forensics
      • E-Discovery
      • Computer and Cell Phone Forensics
  • Closed Cases
    • Closed Cases
    • Case Details
  • News
  • Contact
310-270-0598

Confidentiality Guaranteed

310-270-0598

Confidentiality Guaranteed

Logo

Contact Info

  • 11400 West Olympic Blvd, Los Angeles, CA 90064
  • 310-270-0598
  • info@forensicss.com

    Blog Details

      ForensicsS | Private Detective & Digital Forensics Investigation Experts > News > Uncategorized > FBI warns of Luna Moth extortion assaults focusing on law companies
    FBI warns of Luna Moth extortion assaults focusing on law companies
    23
    May
    • ForensicsS
    • 0 Comments

    FBI warns of Luna Moth extortion assaults focusing on law companies

    OSINT

    OSINT Luna Moth

    The FBI warned that an extortion gang identified as the Silent Ransom Team has been focusing on U.S. law companies over the final two years in callback phishing and social engineering assaults.

    On the complete identified as Luna Moth, Chatty Spider, and UNC3753, this threat team has been vigorous since 2022 and was also on the lend a hand of BazarCall campaigns that supplied initial get entry to to company networks for Ryuk and Conti ransomware assaults.

    In March 2022, following Conti’s shutdown, the threat actors separated from the cybercrime syndicate and formed their maintain operation known as Silent Ransom Team (SRG).

    In latest assaults, SRG impersonates the targets’ IT red meat up in email, unfounded sites, and name calls the utilization of social engineering ways to wreck get entry to to the targets’ networks.

    This extortion team would not encrypt the victims’ programs and is identified for irritating ransoms not to leak nonetheless recordsdata stolen from compromised gadgets online.

    “SRG will then direct the employee to join a remote access session, either through an email sent to them, or navigating to a web page. Once the employee grants access to their device, they are told that work needs to be done overnight,” the FBI mentioned in a deepest alternate notification on Friday.

    “Once in the victim’s device, a typical SRG attack involves minimal privilege escalation and quickly pivots to data exfiltration conducted through ‘WinSCP’ (Windows Secure Copy) or a hidden or renamed version of ‘Rclone.'”

    After stealing the victims’ recordsdata, they extort them by technique of ransom emails, threatening to sell or put up the knowledge, and they’ll also name workers of breached organizations to force them into ransom negotiations. Whereas they’ve a right web space the build apart they’re leaking their victims’ recordsdata, the FBI says the extortion gang would not constantly note up on their recordsdata leak threats.

    OSINT SRG targets over the past year
    SRG targets over the last one year (EclecticIQ)

    To defend against their assaults, the FBI advises the utilization of sturdy passwords, enabling two-factor authentication for all workers, making odd recordsdata backups, and conducting crew coaching on detecting phishing makes an strive.

    FBI’s warning follows a contemporary EclecticIQ document detailing SRG assaults focusing on true and monetary establishments in the United States, with the attackers being seen registering domains to “impersonate IT helpdesk or support portals for major U.S. law firms and financial services firms, using typosquatted patterns.”

    Victims are being sent malicious emails with unfounded helpdesk numbers, urging them to name to resolve diverse non-existent complications. Nonetheless, Luna Moth operators impersonating IT crew on the assorted shatter will strive and trick focused companies’ workers into installing some distance-off monitoring & management (RMM) instrument from unfounded IT attend desk sites.

    Once the RMM tool is installed and launched, the threat actors wreck palms-on keyboard get entry to, which permits them to spy treasured documents on compromised gadgets and shared drivers that shall be later exfiltrated the utilization of Rclone (cloud syncing) or WinSCP (by technique of SFTP).

    Essentially based on EclecticIQ, ransom demands sent by the Silent Ransom Team fluctuate between one and eight million USD, reckoning on the breached company’s size.


    OSINT Red Report 2025

    Study More

    • Tags

    • cybercrime email-fraud Extortion forensics|digital-forensics Investigation malware online-scam phishing-attack private-detective scam|fraud private-eye cyber|cybersecurity private-eye phishing|phishing-attack private-investigator private-investigator hacking|hacker warns

    Recent Posts

    • University of Virginia President Resigns Underneath Stress From Trump Administration
    • Crypto heists reach $2.1B to this point in 2025 as converse-backed hackers ramp up assaults
    • British man in the lend a hand of ‘IntelBroker’ hacker community charged with stealing millions
    • ‘He must be deported’: Tennessee Congressman requires DOJ probe into Mamdani’s naturalization
    • Colley Intelligence Identified in Chambers Litigation Strengthen Manual 2025

    Recent Comments

    No comments to show.

    Categories

    • cybersecurity
    • Investigations
    • Uncategorized

    Recent Posts

    University of Virginia President Resigns Underneath Stress From Trump Administration
    June 27, 2025
    University of Virginia President Resigns Underneath Stress From Trump Administration
    Crypto heists reach $2.1B to this point in 2025 as converse-backed hackers ramp up assaults
    June 27, 2025
    Crypto heists reach $2.1B to this point in 2025 as converse-backed hackers ramp up assaults
    British man in the lend a hand of ‘IntelBroker’ hacker community charged with stealing millions
    June 27, 2025
    British man in the lend a hand of ‘IntelBroker’ hacker community charged with stealing millions

    Popular Tags

    accused administration calls Crypto Cyber cybercrime cybercrimefraud cybercrimehacker cybercrimephishing-attack cybersecurity digital-forensics director email-fraud Extortion forensics|digital-forensics fraud government hacker hackers Investigation investigationcybersecurity Korea Korean Launches malware malwarefraud malwarephishing-attack Million North online-scam online-scamphishing-attack orders Patel phishing-attack private-detective scam|fraud private-eye cyber|cybersecurity private-eye phishing|phishing-attack private-investigator private-investigator hacking|hacker probe regulator suspect Trump University warns

    Forensics – Trusted Experts in Surveillance, Cyber Security, Background Checks, and Digital Forensics across California.

    • 310-270-0598
    • info@forensicss.com
    • 11400 West Olympic Blvd, Los Angeles, CA 90064

    Explore

    • News
    • About
    • Our Services
    • Find A Person
    • Child Custody
    • Contact Us
    • Los Angeles
    • Orange County
    • San Diego

    Services

    • Cyber Security
    • Online Blackmail
    • Cell Phone Forensics
    • Domestic Investigation
    • Social Media Investigator
    • Crypto Scam Investigation

    Newsletter

    Sign up email to get our daily latest news & updates from us

    © Copyright 2021 by KRIGO