News

Hackers Target Financial Firms with Social Engineering and Data Extortion

Google's security researchers have identified threat actors targeting large U.S. financial institutions through a combination of social engineering and data theft. The hackers reportedly call employees at financial firms to establish initial access, then move to exfiltrate sensitive data and extort their victims.

The attacks highlight an ongoing trend where cybercriminals combine traditional hacking techniques with direct outreach—such as phone calls—to employees. This approach allows attackers to bypass technical controls by exploiting human trust rather than purely relying on software vulnerabilities.

Security teams at financial institutions are advised to reinforce employee awareness training and implement strict verification procedures for sensitive requests, particularly those involving access credentials or data transfers.

Sources