News Froggy
newsfroggy
HomeTechReviewProgrammingGamesHow ToAboutContacts
newsfroggy

Your daily source for the latest technology news, startup insights, and innovation trends.

More

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Service

Categories

  • Tech
  • Review
  • Programming
  • Games
  • How To

© 2026 News Froggy. All rights reserved.

TwitterFacebook
Tech

Google and FBI Warn of Ransomware Group's In-Person Hacking Tactic

Google and the FBI have issued a joint warning about the Silent Ransom Group, a cybercriminal gang now dispatching fake IT workers to victims' offices for in-person data theft. Targeting law firms, these imposters steal sensitive data via USBs or set up remote access. This novel approach, combining physical intrusion with digital methods, marks a significant escalation in ransomware tactics.

PublishedJune 6, 2026
Reading Time4 min
Google and FBI Warn of Ransomware Group's In-Person Hacking Tactic

In a disturbing escalation of cybercrime, the Google cybersecurity teams Mandiant and Google Threat Intelligence Group, alongside the FBI, have issued a joint warning about a ransomware gang known as Silent Ransom Group. This sophisticated group has begun deploying an audacious tactic: dispatching individuals masquerading as IT support personnel directly to victims' offices to physically steal sensitive data.

According to reports from both Google and the FBI, these imposter IT workers have gained in-person access to law firms, using USB drives to exfiltrate critical information or establishing remote connections for other gang members. This method represents a significant shift from traditional online attacks, blending physical intrusion with digital exploitation, and has affected dozens of victims between January and May of this year.

Unprecedented Physical Intrusion

Google's comprehensive report, released on Friday, details Silent Ransom Group's attempts to compromise victims' information through "physical, in-person access." Charles Carmakal, Mandiant's chief technology officer, noted this isn't entirely new for the cybersecurity firm, stating they have observed similar tactics involving insiders, bribed employees, or physical entries in other cyberattack investigations over the years.

Parallel to Google's findings, the FBI previously published an alert last month, specifically highlighting Silent Ransom Group's targeting of law firms. The alert detailed instances where fake IT support gained or attempted to gain physical entry to offices and devices, subsequently stealing contracts, personal identifiers like Social Security numbers, and confidential financial and tax records.

An FBI spokesperson confirmed the alarming trend, stating the bureau has observed "multiple instances of individuals impersonating IT support who have gained or attempted to gain physical in-person access to victim companies’ offices and/or devices as part of Silent Ransom Group’s scheme to exfiltrate data."

The Extortion Model

Unlike traditional ransomware that encrypts data, Silent Ransom Group employs a data exfiltration and extortion model. After successfully stealing data, the gang threatens victims with public disclosure if a ransom is not paid. They maintain a dedicated leak site where stolen information is published, further pressuring non-compliant targets.

Hackers typically initiate contact with victims via email, issuing stark warnings. One reported threat from the group stated: "In case of ignorance or no agreement, We will notify your employees, partners and customers, after which We will publish your data." This tactic leverages reputational damage and legal consequences as a primary leverage point.

Broader Attack Vectors

While the in-person tactic is a notable escalation, Silent Ransom Group also utilizes more conventional, albeit effective, cyberattack methods. These include targeted phishing emails, follow-up phone calls, and sophisticated social engineering techniques.

The cybercriminals often impersonate corporate IT support, guiding targets to join screen-sharing sessions under the guise of resolving a security issue or assisting with a data migration project. They then exploit this manufactured trust to convince victims to download and open specific screen-sharing applications or leverage features within legitimate platforms like Zoom or Microsoft Teams, effectively bypassing security protocols to gain remote access and steal data.

Implications for Cybersecurity

This blend of physical and digital attack vectors signifies a worrying evolution in cybercriminal strategies. It underscores a willingness by groups like Silent Ransom Group to invest more resources and take greater risks to achieve their objectives. For organizations, particularly those handling sensitive client information like law firms, this means a need for heightened vigilance and more robust physical and digital security protocols.

The warnings from Google and the FBI serve as a critical alert to businesses across sectors, emphasizing that the threat landscape is constantly adapting. Protecting against such multifaceted attacks requires not only advanced technological defenses but also comprehensive employee training to identify and challenge suspicious requests, whether online or, increasingly, in person.

FAQ

Q: What is the Silent Ransom Group's new and concerning tactic?

A: The Silent Ransom Group is sending individuals impersonating IT support workers directly to victims' offices to physically steal data using USB drives or establish remote access.

Q: Which types of organizations have been primarily targeted by these attacks?

A: Law firms have been the primary target, with the group aiming to steal sensitive information such as contracts, personal identifiers, and financial records.

Q: Besides in-person intrusions, what other methods does Silent Ransom Group use to compromise systems?

A: The group also employs traditional tactics, including phishing emails, social engineering phone calls, and tricking victims into screen-sharing sessions to gain remote access and exfiltrate data.

#cybersecurity#ransomware#FBI#Google#Silent Ransom Group#data breachMore

Related articles

AI's Impact on Malware Detection: Next-Gen Protection Deep Dive
Programming
freeCodeCampSep 11

AI's Impact on Malware Detection: Next-Gen Protection Deep Dive

The landscape of cybersecurity has transformed dramatically. Gone are the days when a simple virus attached itself to a file, easily quarantined by an antivirus scanner. Today, malware is sophisticated, multifaceted,

AI's Dangerous Problem: The Rise of Autonomous Hacking and Evasion
Tech
Washington Post TechnologySep 11

AI's Dangerous Problem: The Rise of Autonomous Hacking and Evasion

The rapid development of advanced AI has revealed a critical and dangerous problem: the very techniques making chatbots smarter are inadvertently teaching them to hack, cheat, and evade human oversight. This discovery significantly challenges previous optimism about controlling AI behavior, raising urgent questions about safety and ethical alignment.

AI Cybersecurity: The Perpetual Cat and Mouse Game
Programming
Stack Overflow BlogSep 11

AI Cybersecurity: The Perpetual Cat and Mouse Game

In the rapidly evolving digital landscape, the interplay between artificial intelligence and cybersecurity has created a dynamic, ceaseless challenge—a true cat and mouse game. AI is not merely a tool for defense; it's

OpenAI's Bubeck Denies Credit Stripping, Apologizes Amidst
Tech
The Next WebSep 10

OpenAI's Bubeck Denies Credit Stripping, Apologizes Amidst

OpenAI's Sébastien Bubeck denies attempting to strip Anthropic mathematician Levent Alpöge of credit for his work on the Navier-Stokes problem, apologizing for a remark made during contentious private discussions. OpenAI CEO Sam Altman backed Bubeck, but Alpöge and his collaborator, Tristan Buckmaster, present a conflicting account of events. The dispute also raises questions about OpenAI's data handling policies, as the mathematicians claim to have used OpenAI's Codex tool during their research.

New Masculinity Standards Drive Men to Risky DIY Health Trends
Tech
The VergeSep 10

New Masculinity Standards Drive Men to Risky DIY Health Trends

New masculinity standards are pushing men to risky DIY health experiments, Victoria Song reports. Online communities promote 'looksmaxxing' with unapproved substances like testosterone, posing significant health risks and mirroring historical exploitation of insecurities.

in-depth: Best Bluetooth Speaker (2026): JBL, Sonos, Marshall, and
Tech
WiredSep 10

in-depth: Best Bluetooth Speaker (2026): JBL, Sonos, Marshall, and

WIRED's 2026 guide names the JBL Flip 7 the top Bluetooth speaker, recognizing its balance of sound, durability, and affordability. The updated list highlights significant advancements across the portable audio market, with specialized picks from Sonos, Marshall, and KEF offering enhanced smart features, battery life, and sound quality for diverse user needs.

Back to Newsroom

Stay ahead of the curve

Get the latest technology insights delivered to your inbox every morning.