Scattered Spider Moves from Data Leaks to Insider-Powered Access Markets Targeting Microsoft, Apple, and More

Scattered Spider has evolved from public hacks to a professionalized cybercrime network focusing on insider access and data brokerage targeting major companies like Microsoft and Apple. Their shift includes profit-sharing schemes with insiders and extortion based on stolen data, highlighting a strategic move in cyber threat operations. #ScatteredSpider #LAPSUS #insiderthreat #RaaS…

Read More

Attackers increasingly conduct “malware-less” database ransomware by exploiting exposed or misconfigured Internet-facing databases, using legitimate database commands to steal, delete, or lock data and leave ransom notes without deploying malicious binaries. These campaigns target services like MongoDB, PostgreSQL, MySQL, Redis, and Elasticsearch and often automate scanning, credential testing, data exfiltration, and destructive commands; defenders should restrict exposure, enforce strong authentication/MFA, and maintain isolated backups. #MongoDB #PostgreSQL

Read More
Scattered LAPSUS$ Hunters Claims Red Hat, S&P Global Breaches

The Scattered LAPSUS$ Hunters group has claimed responsibility for several high-profile data breaches, including Red Hat, S&P Global, and the Credit Institute of Vietnam. These attacks involved large-scale exfiltration of sensitive corporate and personal data, with the threat actor setting a ransom deadline for October 10, 2025. #LAPSUS$Hunters #RedHatDataBreach #S&PGlobalHack #VietnamCIC…

Read More
Trinity of Chaos: New Alliance of Hackers Extorts 39 Firms, Leaking Data Stolen from Cisco, Google, and Global Airlines

A recent report reveals that the cybercriminal alliance “Trinity of Chaos” has evolved into a ransomware group targeting major global corporations, including Google, Cisco, and airlines. They have published a massive leak of sensitive data, highlighting the ongoing threat of sophisticated data extortion campaigns. #Lapsus$ #ScatteredSpider #ShinyHunters…

Read More
Dark Web Profile: Scattered Lapsus$ Hunters

Scattered Lapsus$ Hunters — an alliance of Scattered Spider, LAPSUS$, and ShinyHunters — carried out coordinated social‑engineering intrusions into Salesforce environments of numerous major companies in mid‑2025, stealing data from at least 91 organizations without exploiting Salesforce vulnerabilities. The group scaled vishing and OAuth abuse (often via trojanized Data Loader apps and credential‑theft malware), leaked extortion demands on Telegram, and targeted high‑value sectors including technology, luxury retail, aviation, and insurance. #ScatteredSpider #ShinyHunters

Read More
Scattered LAPSUS$ Hunters Launches Data Leak Site to Extort Salesforce Victims

The Scattered LAPSUS$ Hunters threat group has launched a new dark web data leak site, aiming to extort companies by releasing breached data. Their targets include major corporations like Salesforce, Toyota, Disney, and Google, with threats of releasing sensitive information if ransoms are not paid by October 10. #LAPSUS$ #ScatteredSpider #Salesforce…

Read More