{"id":11670,"date":"2026-02-10T19:31:45","date_gmt":"2026-02-10T19:31:45","guid":{"rendered":"https:\/\/techtrendfeed.com\/?p=11670"},"modified":"2026-02-10T19:31:45","modified_gmt":"2026-02-10T19:31:45","slug":"new-cybercrime-group-0apt-accused-of-faking-tons-of-of-breach-claims","status":"publish","type":"post","link":"https:\/\/techtrendfeed.com\/?p=11670","title":{"rendered":"New Cybercrime Group 0APT Accused of Faking Tons of of Breach Claims"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p class=\"has-drop-cap\">A brand new cybercrime group calling itself 0APT has claimed to have breached a whole lot of main corporations, however safety specialists now say the entire thing is probably going a mere bluff.<\/p>\n<p>In line with researchers at GuidePoint\u2019s Analysis and Intelligence Group (GRIT), the group is utilizing a mixture of faux names and actual corporations to trick companies into paying ransoms for knowledge that was by no means truly stolen. <\/p>\n<p>Researchers additionally state that they&#8217;ve seen no proof that any of those victims have been truly hacked, describing the lists as \u201cwholly fabricated generic firm names and recognisable organisations.\u201d<\/p>\n<h3 id=\"a-staggering-number-of-faked-victims\" class=\"wp-block-heading\"><strong>A \u201cStaggering\u201d Variety of Faked Victims<\/strong><\/h3>\n<p>Most new hacking teams, as we all know them, begin small. Nevertheless, 0APT appeared on 28 January 2026 and instantly claimed over 200 victims in only one week. This \u201cstaggering\u201d velocity, GRIT famous, induced speedy suspicion amongst specialists.<\/p>\n<p>The group\u2019s web site, which seemed like a typical website for <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/popular-chrome-extensions-data-leak-unencrypted-connection\/\" target=\"_blank\" data-type=\"post\" data-id=\"130926\" rel=\"noreferrer noopener\">leaking stolen knowledge<\/a>, immediately went offline on 8 February after experiences surfaced that their numbers didn\u2019t add up. It reappeared the subsequent day, however with the record slashed to simply 15 massive worldwide organisations. The staff additionally discovered that for a few of these \u201cvictims,\u201d there had been no break-in in any respect.<\/p>\n<p>Curiously, the group\u2019s leak website interface intently resembles one beforehand utilized by ShinyHunters and an related group, the place databases from corporations similar to SoundCloud, Crunchbase, and Betterment <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/shinyhunters-leak-soundcloud-crunchbase-betterment-data\/\" target=\"_blank\" rel=\"noreferrer noopener\">have been leaked final month<\/a>.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full is-resized\"><a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists.png\"><img loading=\"lazy\" decoding=\"async\" width=\"1002\" height=\"780\" src=\"https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists.png\" alt=\"\" class=\"wp-image-141401\" style=\"aspect-ratio:1.2846246487354476;width:703px;height:auto\" srcset=\"https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists.png 1002w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-300x234.png 300w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-768x598.png 768w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-380x296.png 380w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-800x623.png 800w\" sizes=\"auto, (max-width: 1002px) 100vw, 1002px\"\/><\/a><figcaption class=\"wp-element-caption\">0APT\u2019s knowledge leak website<\/figcaption><\/figure>\n<\/div>\n<p>Additional analysis resulted within the staff discovering a easy however efficient trick behind the group\u2019s \u201cleaks.\u201d They famous that \u201cthe group\u2019s servers are doubtless piping a stream of <code>\/dev\/random<\/code> straight into the person\u2019s browser.\u201d Principally, they&#8217;re sending ineffective digital \u201cnoise\u201d to a person\u2019s laptop to make it appear like a large, 20GB encrypted file is being downloaded.<\/p>\n<h3 id=\"scamming-both-companies-and-criminals\" class=\"wp-block-heading\"><strong>Scamming Each Corporations and Criminals<\/strong><\/h3>\n<p>Even with out a actual hack, 0APT remains to be in search of a payday. As per GuidePoint\u2019s <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.guidepointsecurity.com\/blog\/gritrep-0apt-and-the-victims-who-werent\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">weblog publish<\/a>, shared completely with Hackread.com, the group is perhaps attempting to \u201cre-extort\u201d corporations utilizing previous knowledge stolen by different teams years in the past.<\/p>\n<p>Researchers famous that 0APT is following a sample set by different \u201cfabulist\u201d or fake teams. For instance, a gaggle known as <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/analyst1.com\/ransomware-diaries-volume-4\/\" target=\"_blank\" rel=\"noreferrer noopener\">RansomedVC<\/a> was identified to purchase previous stolen knowledge and even \u201ccreate fictitious knowledge to deceive certainly one of their victims\u201d again in 2023. One other group, FunkSec, used easy instruments to construct faux credibility for their very own boards and public sale websites.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1.png\"><img loading=\"lazy\" decoding=\"async\" width=\"936\" height=\"600\" src=\"https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1.png\" alt=\"\" class=\"wp-image-141402\" srcset=\"https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1.png 936w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1-300x192.png 300w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1-768x492.png 768w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1-380x244.png 380w, https:\/\/hackread.com\/wp-content\/uploads\/2026\/02\/New-0APT-Group-Fabricating-Victim-Lists-1-800x513.png 800w\" sizes=\"auto, (max-width: 936px) 100vw, 936px\"\/><\/a><figcaption class=\"wp-element-caption\">About web page of 0APT\u2019s website with point out of 0APT_SYNDICATE (Supply: GuidePoint)<\/figcaption><\/figure>\n<\/div>\n<p>Curiously, in addition they appear to be focusing on fellow criminals. In line with researchers, earlier variations of 0APT\u2019s website required a \u201c1BTC safety bond\u201d from anybody wanting to hitch their operation. It is a widespread rip-off within the underworld; a gaggle known as <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.guidepointsecurity.com\/blog\/grit-ransomware-report-february-2024\/\" target=\"_blank\" data-type=\"link\" data-id=\"https:\/\/www.guidepointsecurity.com\/blog\/grit-ransomware-report-february-2024\/\" rel=\"noreferrer noopener nofollow\">Mogilevich <\/a>used the identical tactic in 2024. As that group later admitted: \u201cIn actuality, we aren&#8217;t a ransomware-as-a-service, however skilled fraudsters.\u201d<\/p>\n<p>It&#8217;s value noting that this tactic may be extremely profitable; the Mogilevich actor \u201cclaimed to have defrauded  cybercriminals out of a minimum of $85,000.\u201d<\/p>\n<p>Whereas 0APT\u2019s present claims are doubtless \u201ctotally fabricated,\u201d they may nonetheless perform actual assaults later. For now, specialists say companies shouldn\u2019t panic. Until you discover a ransom notice or locked recordsdata, your look on their record might be only a fabrication.<\/p>\n<p>\n\t\t\t<\/div>\n<p><template id="9NVQP7SCdRKsE43EArqr"></template><\/script><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A brand new cybercrime group calling itself 0APT has claimed to have breached a whole lot of main corporations, however safety specialists now say the entire thing is probably going a mere bluff. In line with researchers at GuidePoint\u2019s Analysis and Intelligence Group (GRIT), the group is utilizing a mixture of faux names and actual [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":11672,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[7788,1815,641,640,1574,7003,853,1027],"class_list":["post-11670","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-0apt","tag-accused","tag-breach","tag-claims","tag-cybercrime","tag-faking","tag-group","tag-hundreds"],"_links":{"self":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/11670","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=11670"}],"version-history":[{"count":1,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/11670\/revisions"}],"predecessor-version":[{"id":11671,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/11670\/revisions\/11671"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/media\/11672"}],"wp:attachment":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=11670"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=11670"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=11670"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}<!-- This website is optimized by Airlift. Learn more: https://airlift.net. Template:. Learn more: https://airlift.net. Template: 69d9690a190636c2e0989534. Config Timestamp: 2026-04-10 21:18:02 UTC, Cached Timestamp: 2026-06-13 15:26:11 UTC -->