Google has published a new report warning against ongoing targeted campaigns against American companies by cyber criminals. Published by Google’s cybersecurity teams Mandiant and Google Threat Intelligence Group, the report highlighted a financially motivated data theft extortion campaign executed by the threat cluster UNC3753 (also tracked as "Luna Moth," “Chatty Spider,” and "Silent Ransom Group") targeting dozens of organizations across professional, legal, and financial services in the United States.

A ransomware group is deploying fake IT workers to infiltrate law firms, stealing data directly via USB drives or enabling remote access for cyberattacks, warn Google and the FBI.

Google has published a new report warning against ongoing targeted campaigns against American companies by cyber criminals. Published by Google’s cybersecurity teams Mandiant and…

UNC3753 hit dozens of U.S. firms in Jan-May 2026 using vishing and RMM tools, driving rapid data theft extortion.

The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and extort victims.