securityonline.info 6/15/2026, 7:31:24 AM · external

UNC3753 Vishing Campaign Targets US Law Firms with Fake Invoices

UNC3753 Vishing Campaign Targets US Law Firms with Fake Invoices
Developing story malware 4 articles tracked
Silent Ransom Group targets US law firms with vishing and impersonation
CyberSIXT Evidence Panel
Primary Source cloud.google.com
Threat Actor
UNC3753

THE active UNC3753 vishing campaign targets US law firms and financial services, utilizing social engineering and remote access tools to steal sensitive data. The attackers initiate the scheme with generic invoice emails to establish trust, followed by phone calls from impostors posing as IT personnel. Victims are persuaded to start screen-sharing sessions where attackers install remote management software for data extraction.

The campaign has demonstrated quick data theft and extortion tactics, warning victims of regulatory repercussions if they do not comply. Organizations are advised to train staff in verifying IT requests and monitor for unusual activities to mitigate risks.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline