The FIN7 cyber gang poses as a cybersecurity company to recruit new hackers

The Wall Street Journal revealed that the Russian-affiliated cybercriminal group FIN7—which has been responsible for several massive attacks on point-of-sale terminals—has been recruiting new talent by posing as a cybersecurity firm.

FIN7 posted numerous cybersecurity job offers on specialised websites in Russia and Ukraine, linking to the website of a fake cyberdefence company called Bastion Secure.

The skills sought by FIN7 included mapping of compromised corporate systems, identification of users and terminals within systems, and location of servers and backups.

This recruitment technique allowed FIN7 to avoid using dark web forums, which are heavily monitored by law enforcement agencies.

Stay tuned in real time
Subscribe to
the newsletter
By providing your email address you agree to receive the Incyber newsletter and you have read our privacy policy. You can unsubscribe at any time by clicking on the unsubscribe link in all our emails.
Stay tuned in real time
Subscribe to
the newsletter
By providing your email address you agree to receive the Incyber newsletter and you have read our privacy policy. You can unsubscribe at any time by clicking on the unsubscribe link in all our emails.