Russian Silent Ransom Group Uses In-Person Tactics to Target US Law Firms

Russian Silent Ransom Group Uses In-Person Tactics to Target US Law Firms

First seen 27 Jun 2026, 17:39 UTC MezhaCnn 82% similarity 70.5
Share:

Article Content

Browse articles
ThreatCluster

The Silent Ransom Group has been implicated in a series of cyberattacks targeting US law firms, employing operatives to physically access computers and insert USB devices. This tactic aims to bypass remote security measures and enhance ransom negotiations by obtaining sensitive client data. In April, a lawyer at a New Jersey law firm received a call from an alleged IT support member, leading to an in-person visit that raised suspicions. The group reportedly offers $500 for such visits, which have occurred in major cities like New York and Washington, D.C. The FBI has estimated that the group has extorted around $100 million from law firms in the past six months. This method of attack is risky, leaving behind evidence such as surveillance footage. The group has also utilized distractions, such as posing as delivery personnel, to facilitate their operations.

Key Points: • Silent Ransom Group hires individuals to physically insert USB malware into law firm computers. • The group has extorted approximately $100 million from law firms in the last six months. • FBI investigations indicate a growing trend of physical infiltration tactics in cybercrime.

ThreatCluster AI

Timeline

2026-04-01
Law firm receives urgent IT support call
A lawyer was contacted about a spreading virus, prompting an in-person IT visit that raised suspicions.
Cnn
2026-06-27
CNN and Mezha report on Silent Ransom Group tactics
Both articles detail how the group uses hired operatives to bypass remote security by plugging in USB devices.
Cnn
2026-06-27
FBI estimates $100 million extorted
The FBI estimates that the Silent Ransom Group has extorted around $100 million from law firms in recent months.
Cnn

Community

Browse all →