News Froggy
newsfroggy
HomeTechReviewProgrammingGamesHow ToAboutContacts
newsfroggy

Your daily source for the latest technology news, startup insights, and innovation trends.

More

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Service

Categories

  • Tech
  • Review
  • Programming
  • Games
  • How To

© 2026 News Froggy. All rights reserved.

TwitterFacebook
Tech

Google and FBI Warn of Ransomware Group's In-Person Hacking Tactic

Google and the FBI have issued a joint warning about the Silent Ransom Group, a cybercriminal gang now dispatching fake IT workers to victims' offices for in-person data theft. Targeting law firms, these imposters steal sensitive data via USBs or set up remote access. This novel approach, combining physical intrusion with digital methods, marks a significant escalation in ransomware tactics.

PublishedJune 6, 2026
Reading Time4 min
Google and FBI Warn of Ransomware Group's In-Person Hacking Tactic

In a disturbing escalation of cybercrime, the Google cybersecurity teams Mandiant and Google Threat Intelligence Group, alongside the FBI, have issued a joint warning about a ransomware gang known as Silent Ransom Group. This sophisticated group has begun deploying an audacious tactic: dispatching individuals masquerading as IT support personnel directly to victims' offices to physically steal sensitive data.

According to reports from both Google and the FBI, these imposter IT workers have gained in-person access to law firms, using USB drives to exfiltrate critical information or establishing remote connections for other gang members. This method represents a significant shift from traditional online attacks, blending physical intrusion with digital exploitation, and has affected dozens of victims between January and May of this year.

Unprecedented Physical Intrusion

Google's comprehensive report, released on Friday, details Silent Ransom Group's attempts to compromise victims' information through "physical, in-person access." Charles Carmakal, Mandiant's chief technology officer, noted this isn't entirely new for the cybersecurity firm, stating they have observed similar tactics involving insiders, bribed employees, or physical entries in other cyberattack investigations over the years.

Parallel to Google's findings, the FBI previously published an alert last month, specifically highlighting Silent Ransom Group's targeting of law firms. The alert detailed instances where fake IT support gained or attempted to gain physical entry to offices and devices, subsequently stealing contracts, personal identifiers like Social Security numbers, and confidential financial and tax records.

An FBI spokesperson confirmed the alarming trend, stating the bureau has observed "multiple instances of individuals impersonating IT support who have gained or attempted to gain physical in-person access to victim companies’ offices and/or devices as part of Silent Ransom Group’s scheme to exfiltrate data."

The Extortion Model

Unlike traditional ransomware that encrypts data, Silent Ransom Group employs a data exfiltration and extortion model. After successfully stealing data, the gang threatens victims with public disclosure if a ransom is not paid. They maintain a dedicated leak site where stolen information is published, further pressuring non-compliant targets.

Hackers typically initiate contact with victims via email, issuing stark warnings. One reported threat from the group stated: "In case of ignorance or no agreement, We will notify your employees, partners and customers, after which We will publish your data." This tactic leverages reputational damage and legal consequences as a primary leverage point.

Broader Attack Vectors

While the in-person tactic is a notable escalation, Silent Ransom Group also utilizes more conventional, albeit effective, cyberattack methods. These include targeted phishing emails, follow-up phone calls, and sophisticated social engineering techniques.

The cybercriminals often impersonate corporate IT support, guiding targets to join screen-sharing sessions under the guise of resolving a security issue or assisting with a data migration project. They then exploit this manufactured trust to convince victims to download and open specific screen-sharing applications or leverage features within legitimate platforms like Zoom or Microsoft Teams, effectively bypassing security protocols to gain remote access and steal data.

Implications for Cybersecurity

This blend of physical and digital attack vectors signifies a worrying evolution in cybercriminal strategies. It underscores a willingness by groups like Silent Ransom Group to invest more resources and take greater risks to achieve their objectives. For organizations, particularly those handling sensitive client information like law firms, this means a need for heightened vigilance and more robust physical and digital security protocols.

The warnings from Google and the FBI serve as a critical alert to businesses across sectors, emphasizing that the threat landscape is constantly adapting. Protecting against such multifaceted attacks requires not only advanced technological defenses but also comprehensive employee training to identify and challenge suspicious requests, whether online or, increasingly, in person.

FAQ

Q: What is the Silent Ransom Group's new and concerning tactic?

A: The Silent Ransom Group is sending individuals impersonating IT support workers directly to victims' offices to physically steal data using USB drives or establish remote access.

Q: Which types of organizations have been primarily targeted by these attacks?

A: Law firms have been the primary target, with the group aiming to steal sensitive information such as contracts, personal identifiers, and financial records.

Q: Besides in-person intrusions, what other methods does Silent Ransom Group use to compromise systems?

A: The group also employs traditional tactics, including phishing emails, social engineering phone calls, and tricking victims into screen-sharing sessions to gain remote access and exfiltrate data.

#cybersecurity#ransomware#FBI#Google#Silent Ransom Group#data breachMore

Related articles

Meta's AI Engine Propels New App Development Surge
Tech
TechCrunch AIJul 30

Meta's AI Engine Propels New App Development Surge

Meta is leveraging AI, especially large language models (LLMs), to rapidly develop and launch new consumer applications, marking a strategic pivot. CEO Mark Zuckerberg announced more apps are coming soon, following recent launches for Facebook Groups, Marketplace, and Instagram. This AI-driven acceleration helps Meta test ideas faster and has significantly boosted apps like Threads.

How to Reimagine the World with Nano Banana 2 in Google Earth
How To
LifehackerJul 30

How to Reimagine the World with Nano Banana 2 in Google Earth

Learn to use Nano Banana 2 AI in Google Earth on the web to generate historical scenes, futuristic landscapes, or personal design visualizations with text prompts.

startups: AI agents are about to run the enterprise. Onyx raised
Tech
The Next WebJul 30

startups: AI agents are about to run the enterprise. Onyx raised

Onyx Security, an Israeli startup, has secured a $113 million Series B funding round, valuing it at $640 million. The company's "secure AI control plane" sits between enterprise AI agents and critical systems, inspecting and blocking unauthorized actions to keep humans in control. This investment addresses the growing need for AI agent accountability as autonomous AI rapidly takes over enterprise operations, a market already seeing significant investment and activity.

Google Flow Sessions & Flow: Elevating AI Filmmaking Beyond 'Slop
Review
CNETJul 30

Google Flow Sessions & Flow: Elevating AI Filmmaking Beyond 'Slop

Verdict: AI as a Catalyst for Artistic Vision Google Labs' Flow Sessions and the underlying Google Flow generative AI tool represent a compelling counter-narrative to the prevailing skepticism surrounding AI in creative

Venture Capitalist's Stirring Speech: A Rallying Cry for Seattle
Tech
GeekWireJul 30

Venture Capitalist's Stirring Speech: A Rallying Cry for Seattle

AI House co-founder Jacob Colker delivered a passionate 'rallying cry' for Seattle at a recent tech event, urging residents to overcome a 'confidence problem' and recognize the city's immense potential. He emphasized the need for greater community and connection to fully leverage Seattle's role in the future of technology.

Zuckerberg Outlines Meta's Bold Vision for Personal AI Agents
Tech
The VergeJul 30

Zuckerberg Outlines Meta's Bold Vision for Personal AI Agents

Meta CEO Mark Zuckerberg has announced ambitious plans for a significant push into personal AI agents, a strategy he unveiled during the company's Q2 2026 earnings call on Wednesday, July 29, 2026. This initiative aims

Back to Newsroom

Stay ahead of the curve

Get the latest technology insights delivered to your inbox every morning.