Milk Dragon, also known as NaiLong is an Adversary-in-the-Middle (AiTM) phishing kit active since October 2025. Unlike conventional phishing tactics that rely on fear and urgency, Milk Dragon lures ...
Understanding what a malware sample does and being able to detect it are two different jobs, and the second one needs a skill many teams are short of. The Group-IB Malware Detonation Platform now ...
Group-IB, a leading creator of predictive cybersecurity technologies to investigate, prevent, and fight digital crime, today announced its contribution to Operation KillSwitch, an international ...
Successful espionage usually relies on patience. Nation-state actors quietly infiltrate targets, maintain access for years, and gather intelligence without attracting attention. But one threat actor ...
In the first episode of Masked Actors: BelArabi_بالعربي, Mohammad Gamal and Mansour Alhmoud examine what drives modern cyber threats and unpack MuddyWater’s latest activity across the Middle East, ...
Group-IB, a leading creator of predictive cybersecurity technologies to investigate, prevent, and fight digital crime, today signed a memorandum of understanding (MoU) with the Ministry of Digital ...
In the first episode of Masked Actors: BelArabi_بالعربي , Mohammad Younis and Mansour Alhmoud explore the motivations behind today’s cyber threats before taking a closer look at MuddyWater, a ...
Kuwait’s banking sector is facing sustained, targeted attacks from ransomware groups, hacktivist networks, and Initial Access Brokers selling corporate network access to the highest bidder. The threat ...
Paid in Full: How card fraudsters in the GCC use government payment portals to cash out stolen cards
The GCC has made significant investments in payment security and fraud prevention, strengthening authentication and making many traditional card-fraud techniques harder to execute. Group-IB has ...
A modern fraud campaign is run as one continuous operation, infrastructure to credentials to takeover to cash-out, often by specialised criminal groups cooperating through a marketplace. Most ...
A widespread smishing campaign was identified in which victims received fraudulent SMS messages impersonating official entities and were instructed to click a link inside the SMS in order to “complete ...
During the “Hook for Gold” research, Group-IB discovered an application called Vwork that was installed within minutes after initial Gigabud infection along with tampered banking applications. Trials ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results