Lapsus$ is a financially motivated cybercrime group that emerged in late 2021, known for employing unconventional data extortion tactics. The group leverages social engineering, SIM swapping, and insider recruitment to gain access to sensitive information from high-profile organizations across various sectors.
Key insights
•Employs social engineering techniques, including phishing and bribery, to gain initial access.
•Targets major technology, telecommunications, and gaming companies globally.
•Utilizes legitimate tools for credential theft instead of deploying custom malware.
•Publicly threatens victims with data leaks via Telegram to extort ransom.
•Operates a recruitment program for insiders to facilitate access to internal networks.
•Often causes disruptions by deleting systems and resources in compromised environments.