securityonline.info 9/1/2026, 4:56:45 AM · external

BREEZE COMET gang targets Brazilian banks with Pix fraud malware

BREEZE COMET gang targets Brazilian banks with Pix fraud malware
Developing story malware 2 articles tracked
BREEZE COMET conducts Pix fraud campaign against Brazilian banks
CyberSIXT Evidence Panel
Primary Source cloud.google.com
Threat Actor
BREEZE COMET

THE article reports on the activities of the BREEZE COMET cybercriminal group, which has been exploiting vulnerabilities to conduct banking fraud primarily targeting Brazilian financial institutions. This group, previously known as UNC5669, uses advanced infiltration techniques, including manipulating banking software and executing unauthorized transactions on payment systems like Pix.

Mandiant and Google Threat Intelligence Group have identified their tactics involving the deployment of custom malware and backdoors, as well as hardware insertion into retail networks. Analysts warn that these operations pose significant risks to financial organizations and advise implementing strict security measures to protect transaction workflows and sensitive credentials.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline