DataSans
Phishing Social Engineering

Initial Access Broker Group Relies on Social Engineering

Google’s Threat Analysis Group (TAG) describes a cybercriminal group it calls “EXOTIC LILY” that acts as an initial access broker for numerous financially motivated threat actors, including FIN12 and the Conti ransomware gang. EXOTIC LILY uses phishing attacks to gain access to organizations’ networks, then sells this access to other gangs for further exploitation.

originally published onhttps://blog.knowbe4.com/initial-access-broker-group-relies-on-social-engineering

Related posts

New Phishing Campaign Impersonates Canada Revenue Agency

administrator

New Data Breach Extortion Attack Begins with a Fake Duolingo or MasterClass Subscription Scam

administrator

New QBot Attack Only Takes 30 Minutes to Elevate Privileges and Steal Data

administrator