ForensicsS | Private Detective & Digital Forensics Investigation Experts
  • info@forensicss.com

    Send Email

  • 11400 West Olympic Blvd, Los Angeles, CA 90064

  • Home
  • About Us
  • Services
    • Domestic Investigation
      • Los Angeles Private Eye
      • Infidelity Investigations
      • Asset Investigations
      • Private Detective Orange County
      • Child Custody Investigations
      • Missing Person Locates
      • Wire Fraud
      • Corporate Security Investigations
      • Surveillance Operations
      • Financial Fraud Investigations
      • Asset and Hidden Finances Investigations
      • Bug Sweep TSCM Investigation
    • Cyber Security
      • Cyber Bullying Online Investigation
      • Penetration Testing Service
      • Social Media Monitoring
      • Romance Scam Investigator
      • Cyber Stalking Investigation
      • Crypto Scam Investigation
      • Cyber Security Assessment
      • Cyber Harassment Online Investigator
      • Ransomware Attack Investigation
      • Social Media Investigator
      • Extortion Investigation services
      • Background Screening
      • Insurance Fraud Detective
      • Forensic Accounting
      • Online Identity Theft
      • Online Blackmail
      • Cell Phone Forensics
      • Automotive Forensics
      • Audio Video Forensics
      • E-Discovery
      • Computer and Cell Phone Forensics
  • Closed Cases
    • Closed Cases
    • Case Details
  • News
  • Contact
310-270-0598

Confidentiality Guaranteed

310-270-0598

Confidentiality Guaranteed

Logo

Contact Info

  • 11400 West Olympic Blvd, Los Angeles, CA 90064
  • 310-270-0598
  • info@forensicss.com

    Blog Details

      ForensicsS | Private Detective & Digital Forensics Investigation Experts > News > Uncategorized > FBI warns of Luna Moth extortion assaults focusing on law companies
    FBI warns of Luna Moth extortion assaults focusing on law companies
    23
    May
    • ForensicsS
    • 0 Comments

    FBI warns of Luna Moth extortion assaults focusing on law companies

    OSINT

    OSINT Luna Moth

    The FBI warned that an extortion gang identified as the Silent Ransom Team has been focusing on U.S. law companies over the final two years in callback phishing and social engineering assaults.

    On the complete identified as Luna Moth, Chatty Spider, and UNC3753, this threat team has been vigorous since 2022 and was also on the lend a hand of BazarCall campaigns that supplied initial get entry to to company networks for Ryuk and Conti ransomware assaults.

    In March 2022, following Conti’s shutdown, the threat actors separated from the cybercrime syndicate and formed their maintain operation known as Silent Ransom Team (SRG).

    In latest assaults, SRG impersonates the targets’ IT red meat up in email, unfounded sites, and name calls the utilization of social engineering ways to wreck get entry to to the targets’ networks.

    This extortion team would not encrypt the victims’ programs and is identified for irritating ransoms not to leak nonetheless recordsdata stolen from compromised gadgets online.

    “SRG will then direct the employee to join a remote access session, either through an email sent to them, or navigating to a web page. Once the employee grants access to their device, they are told that work needs to be done overnight,” the FBI mentioned in a deepest alternate notification on Friday.

    “Once in the victim’s device, a typical SRG attack involves minimal privilege escalation and quickly pivots to data exfiltration conducted through ‘WinSCP’ (Windows Secure Copy) or a hidden or renamed version of ‘Rclone.'”

    After stealing the victims’ recordsdata, they extort them by technique of ransom emails, threatening to sell or put up the knowledge, and they’ll also name workers of breached organizations to force them into ransom negotiations. Whereas they’ve a right web space the build apart they’re leaking their victims’ recordsdata, the FBI says the extortion gang would not constantly note up on their recordsdata leak threats.

    OSINT SRG targets over the past year
    SRG targets over the last one year (EclecticIQ)

    To defend against their assaults, the FBI advises the utilization of sturdy passwords, enabling two-factor authentication for all workers, making odd recordsdata backups, and conducting crew coaching on detecting phishing makes an strive.

    FBI’s warning follows a contemporary EclecticIQ document detailing SRG assaults focusing on true and monetary establishments in the United States, with the attackers being seen registering domains to “impersonate IT helpdesk or support portals for major U.S. law firms and financial services firms, using typosquatted patterns.”

    Victims are being sent malicious emails with unfounded helpdesk numbers, urging them to name to resolve diverse non-existent complications. Nonetheless, Luna Moth operators impersonating IT crew on the assorted shatter will strive and trick focused companies’ workers into installing some distance-off monitoring & management (RMM) instrument from unfounded IT attend desk sites.

    Once the RMM tool is installed and launched, the threat actors wreck palms-on keyboard get entry to, which permits them to spy treasured documents on compromised gadgets and shared drivers that shall be later exfiltrated the utilization of Rclone (cloud syncing) or WinSCP (by technique of SFTP).

    Essentially based on EclecticIQ, ransom demands sent by the Silent Ransom Team fluctuate between one and eight million USD, reckoning on the breached company’s size.


    OSINT Red Report 2025

    Study More

    • Tags

    • cybercrime email-fraud Extortion forensics|digital-forensics Investigation malware online-scam phishing-attack private-detective scam|fraud private-eye cyber|cybersecurity private-eye phishing|phishing-attack private-investigator private-investigator hacking|hacker warns

    Leave a Comment Cancel Reply

    Your email address will not be published.*

    Recent Posts

    • Crossfire, Self perception, and Closing In: Week 8 In Karen Be taught’s Retrial | On The Tale
    • One other LastPass Person Loses $200,000 in Crypto to Hackers
    • Discord flaw lets hackers reuse expired invites in malware advertising campaign
    • Boeing’s 787 Dreamliner Has a Long Historical previous of Safety Issues
    • Sen. Alex Padilla forcibly eradicated from Noem press conference

    Recent Comments

    No comments to show.

    Categories

    • cybersecurity
    • Investigations
    • Uncategorized

    Recent Posts

    Crossfire, Self perception, and Closing In: Week 8 In Karen Be taught’s Retrial | On The Tale
    June 13, 2025
    Crossfire, Self perception, and Closing In: Week 8 In Karen Be taught’s Retrial | On The Tale
    One other LastPass Person Loses $200,000 in Crypto to Hackers
    June 13, 2025
    One other LastPass Person Loses $200,000 in Crypto to Hackers
    Discord flaw lets hackers reuse expired invites in malware advertising campaign
    June 13, 2025
    Discord flaw lets hackers reuse expired invites in malware advertising campaign

    Popular Tags

    accused administration Attack calls charged Chinese Crypto Cyber cybercrime cybercrimefraud cybercrimehacker cybercrimephishing-attack cybersecurity digital-forensics email-fraud Extortion forensics|digital-forensics Former fraud hacker hackers Investigation investigationcybersecurity Korea Korean Launches malware malwarefraud malwarephishing-attack Million North online-scam online-scamphishing-attack orders Patel phishing-attack private-detective scam|fraud private-eye cyber|cybersecurity private-eye phishing|phishing-attack private-investigator private-investigator hacking|hacker sextortion suspect Trump warns

    Forensics – Trusted Experts in Surveillance, Cyber Security, Background Checks, and Digital Forensics across California.

    • 310-270-0598
    • info@forensicss.com
    • 11400 West Olympic Blvd, Los Angeles, CA 90064

    Explore

    • News
    • About
    • Our Services
    • Find A Person
    • Child Custody
    • Contact Us
    • Los Angeles
    • Orange County
    • San Diego

    Services

    • Cyber Security
    • Online Blackmail
    • Cell Phone Forensics
    • Domestic Investigation
    • Social Media Investigator
    • Crypto Scam Investigation

    Newsletter

    Sign up email to get our daily latest news & updates from us

    © Copyright 2021 by KRIGO