vishing3 articles
Apollo Global Hit by Social Engineering Attack Exposing Names, Contacts and SSNs
Apollo Global Management suffered a data breach after a social engineering (vishing) attack allowed threat actors to access its cloud platforms between July 6–10, potentially exposing personal information including names, contact details, and Social Security numbers. The attack is linked to a cybercrime group known as BlackFile (UNC6671), which has been targeting major financial and private equity firms across North America, Australia, and the UK using IT helpdesk-themed phone phishing tactics. While Apollo is the only confirmed victim of a successful data compromise so far, Apollo states there is no evidence the stolen data has been made public or used for fraud, and affected individuals are being offered identity protection services.
Levi Strauss Hit by Social Engineering Attack, Corporate Data Walked Out the Door
Levi Strauss & Co disclosed a cyberattack in an SEC filing, revealing that social engineering was used to compromise three employees' company-issued computers, resulting in corporate data being accessed and exfiltrated. The company says it has contained the incident and evicted the attackers, with no customer data or business operations appearing to have been affected. The investigation is ongoing, and unconfirmed reports suggest the hacking group UNC6671, known for voice phishing campaigns, may have been responsible.
Fake IT Support Calls Are How This Gang Walks Into Law Firms and Walks Out With Everything
The Silent Ransom Group (also tracked as UNC3753/Luna Moth) is actively targeting U.S. law firms and professional services organisations using social engineering tactics, including fake IT support phone calls that trick employees into installing remote access tools, enabling data theft within hours. Once inside a network, attackers steal sensitive legal and financial documents before sending highly aggressive ransom demands — sometimes within 30 minutes of exiting the victim's environment — threatening to notify clients and regulators if payment is not made. Cybersecurity firm Mandiant and the FBI recommend organisations counter these attacks by enforcing strict IT verification procedures, limiting remote access tools, implementing multi-factor authentication, and training staff to recognise voice phishing attempts.