Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Google Warns of Scattered Spider Attacks Targeting IT Support Teams at U.S. Insurance Firms

Google Warns of Scattered Spider Attacks Targeting IT Support Teams at U.S. Insurance Firms

Posted on June 17, 2025June 17, 2025 By CWS

Jun 17, 2025Ravie LakshmananThreat Intelligence / Id Safety
The infamous cybercrime group often called Scattered Spider (aka UNC3944) that just lately focused numerous U.Ok. and U.S. retailers has begun to focus on main insurance coverage corporations, in line with Google Risk Intelligence Group (GTIG).
“Google Risk Intelligence Group is now conscious of a number of intrusions within the U.S. which bear all of the hallmarks of Scattered Spider exercise,” John Hultquist, chief analyst at GTIG, mentioned in an electronic mail Monday.
“We at the moment are seeing incidents within the insurance coverage trade. Given this actor’s historical past of specializing in a sector at a time, the insurance coverage trade needs to be on excessive alert, particularly for social engineering schemes which goal their assist desks and name facilities.”

Scattered Spider is the title assigned to an amorphous collective that is identified for its use of superior social engineering techniques to breach organizations. In latest months, the risk actors are believed to have cast an alliance with the DragonForce ransomware cartel within the wake of the latter’s supposed takeover of RansomHub’s infrastructure.
“The group has repeatedly demonstrated its skill to impersonate workers, deceive IT assist groups, and bypass multi-factor authentication (MFA) by means of crafty psychological techniques,” SOS Intelligence mentioned.

“Typically described as ‘native English audio system,’ they’re suspected to function in or have ties to Western nations, bringing a cultural fluency that makes their phishing and phone-based assaults alarmingly efficient.”
Earlier this month, ReliaQuest revealed that Scattered Spider and DragonForce are more and more focusing on managed service suppliers (MSPs) and IT contractors to acquire entry to a number of downstream prospects by means of a single compromise.

Google-owned Mandiant mentioned the risk actors usually single out giant enterprise organizations, seemingly hoping to land an even bigger payday.
Notably focused are enterprises with giant assist desks and outsourced IT features which are vulnerable to social engineering assaults.
To mitigate in opposition to techniques utilized by the e-crime group, it is advisable to reinforce authentication, implement rigorous identification controls, implement entry restrictions and bounds to stop privilege escalation and lateral motion, and practice assist desk personnel to positively establish workers earlier than resetting their accounts.

Discovered this text fascinating? Observe us on Twitter  and LinkedIn to learn extra unique content material we publish.

The Hacker News Tags:Attacks, Firms, Google, Insurance, Scattered, Spider, Support, Targeting, Teams, U.S, Warns

Post navigation

Previous Post: New KimJongRAT Stealer Using Weaponized LNK File to Deploy Powershell Based Dropper
Next Post: Zyxel Firewall Vulnerability Again in Attacker Crosshairs

Related Posts

Initial Access Brokers Target Brazil Execs via NF-e Spam and Legit RMM Trials Initial Access Brokers Target Brazil Execs via NF-e Spam and Legit RMM Trials The Hacker News
NGINX Vulnerability Exploited in Web Traffic Hijacking NGINX Vulnerability Exploited in Web Traffic Hijacking The Hacker News
New Exploit Targets Patched vBulletin Code Flaw New Exploit Targets Patched vBulletin Code Flaw The Hacker News
Bitwarden CLI Breach Highlights Supply Chain Risks Bitwarden CLI Breach Highlights Supply Chain Risks The Hacker News
Vercel Data Breach, DDoS Takedown, New Android Threats Vercel Data Breach, DDoS Takedown, New Android Threats The Hacker News
DoNot APT Expands Operations, Targets European Foreign Ministries with LoptikMod Malware DoNot APT Expands Operations, Targets European Foreign Ministries with LoptikMod Malware The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AI-Powered Cyberattack Targets Taiwan Government
  • Ivanti EPM Update Resolves Critical Security Flaws
  • Adobe ColdFusion Flaws Pose Severe Security Risks
  • WhatsApp Introduces Scam Alert to Enhance Security
  • Enterprise Security Shows Strength at Edge, Weakness Within

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AI-Powered Cyberattack Targets Taiwan Government
  • Ivanti EPM Update Resolves Critical Security Flaws
  • Adobe ColdFusion Flaws Pose Severe Security Risks
  • WhatsApp Introduces Scam Alert to Enhance Security
  • Enterprise Security Shows Strength at Edge, Weakness Within

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark