
Get 24/7 incident response assistance from our global team
- APAC: +65 3159 4398
- EU & NA: +31 20 890 55 59
- MEA: +971 4 540 6400
- LATAM: +56 2 275 473 79
Get 24/7 incident response assistance from our global team
Ransomware spreads quickly across networks, exploiting vulnerabiliti...
Explore solutions
Effectively safeguard your business assets against unseen risks...
Explore solutions
Your guide to AI innovation, adoption, and acceleration in cybersecurity

Modern fraud isn't an event. It's an industrialised campaign that begins weeks before the payment. The transaction is where fraud ends, not where it happens. This paper shows how to disrupt the campaign weeks before the payment, not document it after.
Your guide to AI innovation, adoption, and acceleration in cybersecurity
Learn more

In September 2018, Group-IB released Silence: Moving into the darkside, the first comprehensive technical report on the group’s attacks. The analysis remains the most complete source of technical information about the infrastructure and tools the cybercriminals used between June 2016 and April 2018.
Since that time, however, the geography of the group’s attacks, some of their tools, and other important elements characteristic of Silence have changed. Group-IB experts continuously monitor the cybercriminals’ activities and in August 2019 published Silence 2.0: Going global, an additional report about the threat actor’s evolution, tactical changes, and new targets.
For the first time in its history, Group-IB has made both reports publicly available with no registration needed, with the aim of helping researchers detect attacks at early stages and correctly attribute them. YARA and Suricata rules, however, are only available to Group‑IB Threat Intelligence customers.
We see the full picture of the evolving cyber threat landscape thanks to unique tools for monitoring the infrastructure used by cybercriminals and data from battlefields:







