Hackers show up at victim’s work disguised as IT support to install malware in person, FBI warns


  • The FBI warned of the Silent Ransom Group (SRG), a threat actor that impersonates IT staff to steal files and plant malware directly into victim offices
  • SRG, also known as Luna Moth/Chatty Spider/UNC3753, primarily targets US law firms, starting with vishing calls and escalating to personal intrusions with external drives
  • Active since 2022 and linked to BazarCall, Conti and Ryuk campaigns, SRG extorts victims via ransom emails, press calls and a leak site that names and shames defaulters

The Federal Bureau of Investigation (FBI) is warning about hackers showing up at people’s offices posing as IT support. They sit at people’s desks, drag all sensitive files onto an external drive and leave behind malware, all while pretending to fix a technical problem.

In a recently released flash alert, the FBI says this brazen attack is being carried out by a threat actor calling itself the Silent Ransom Group (SRG). Active for about four years now, this threat actor starts their attack with a phone call.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top