November 16, 2023

Scattered Spider Targets Commercial Facilities Sectors and Subsectors

What we know so far

The FBI and CISA have issued a joint advisory regarding the activities of Scattered Spider, a cybercriminal group targeting large companies and IT help desks, known for data theft, extortion, and using BlackCat/ALPHV ransomware. The advisory, which includes tactics, techniques, and procedures (TTPs) based on recent investigations, highlights Scattered Spider's expertise in social engineering, including phishing and SIM swap attacks, to gain unauthorized network access. Critical infrastructure organizations are urged to follow the mitigation recommendations provided to minimize the risk and impact of potential cyberattacks by this group.

