Akira ransomware scum blocked victim's security tools – and broke their own encryptor
Russian threat actors are impersonating Signal support to conduct phishing attacks, targeting users to steal their information. This follows a trend of Iranian propaganda sites being taken down by the US, and a marketing company asking for user data.
This report details a current phishing campaign where attackers are posing as Signal support to trick users into providing sensitive information. The tactic is part of a broader trend of malicious actors leveraging popular platforms to gain access to user data. The US government recently dismantled several Iranian propaganda websites, highlighting ongoing efforts to counter disinformation campaigns. Additionally, a marketing company has been flagged for requesting user data in a manner that raises privacy concerns. These events underscore the need for vigilance against online scams and the importance of protecting personal information.