Scattered Spider Launches Multi-Vector Attacks on Critical Infrastructure and Data

The FBI and international agencies warn that the cybercriminal group Scattered Spider has adapted its tactics, now using sophisticated social engineering, legitimate remote access software, and new malware like DragonForce to infiltrate organizations, exfiltrate data, and deploy ransomware rapidly. They target sectors like retail, insurance, and aviation, often exfiltrating data to multiple sites and quickly deploying ransomware such as DragonForce, especially targeting VMware ESXi servers. Despite recent arrests slowing their activity, authorities advise organizations to strengthen defenses through offline backups, multi-factor authentication, and application controls.
- FBI: Watch out for these Scattered Spider signs theregister.com
- Scattered Spider Hijacks VMware ESXi to Deploy Ransomware on Critical U.S. Infrastructure The Hacker News
- Scattered Spider Targeting VMware vSphere Environments SecurityWeek
- Scattered Spider is targeting victims' Snowflake data storage for quick exfiltration The Record from Recorded Future News
- Google details UNC3944 ransomware campaign across US sectors using voice phishing, admin hijack tactics Industrial Cyber
Reading Insights
0
1
4 min
vs 5 min read
90%
864 → 85 words
Want the full story? Read the original article
Read on theregister.com