Connect with us

Technology

Group-IB reveals Hi-Tech Crime Trends 23/24: surge in ransomware against backdrop of growing AI, macOS threats

Published

on

SINGAPORE, Feb. 29, 2024 /PRNewswire/ — Group-IB, a leading creator of cybersecurity technologies to investigate, prevent, and fight digital crime, is proud to announce the launch of its new report Hi-Tech Crime Trends 2023/2024, the latest edition of the company’s annual round-up of the most pressing global cyber threats to organizations and individuals. In the research, Group-IB analysts reveal how the unholy alliance between ransomware groups and Initial Access Brokers (IABs) is still the powerful engine for cybercriminal industry, evidenced by the 74% year-on-year increase in the number of companies that had their data uploaded on dedicated leak sites (DLS). Global threat actors also demonstrated increased interest in Apple platforms, exemplified by the fivefold increase in underground sales related to macOS information stealers.

The growing appetite of nation-state sponsored threat actors, also known as advanced persistent threat (APT) groups, has shown that no region is immune to cyber threats. Group-IB experts discovered a 70% increase in the number of public posts offering zero-day exploits for sale, and also identified cybercriminals’ malicious use of legitimate services and artificial intelligence (AI) infused technologies as the main cyber risks for 2024.

The first edition of Hi-Tech Crime Trends was launched 12 years ago, and the information contained in the report enables businesses, NGOs, governments, and law enforcement agencies around the world to fight cybercrime and help potential victims. For the first time, Hi-Tech Crime Trends includes a section outlining the intricate relationship between artificial intelligence (AI) and cybersecurity threats, outlining how this new technology is being leveraged by cybercriminals, including the misuse of large language models (LLM) such as ChatGPT, and the potential risks to corporate data through AI integration.

Nothing artificial about this threat

Threat actors have already shown how AI can help them develop malware only with a limited knowledge of programming languages, brainstorm new TTPs, compose convincing text to be used in social engineering attacks, and also increase their operational productivity.

Large language models (LLM) such as ChatGPT remain in widespread use, and Group-IB analysts have observed continued interest on underground forums in ChatGPT jailbreaking and specialized generative pre-trained transformer (GPT) development, looking for ways to bypass ChatGPT’s security controls. Group-IB experts have also noticed how, since mid-2023, four ChatGPT-style tools have been developed for the purpose of assisting cybercriminal activity: WolfGPT, DarkBARD, FraudGPT, and WormGPT – all with different functionalities.

FraudGPT and WormGPT are highly discussed tools on underground forums and Telegram channels, tailored for social engineering and phishing. Conversely, tools like WolfGPT, focusing on code or exploits, are less popular due to training complexities and usability issues. Yet, their advancement poses risks for sophisticated attacks.

Group-IB’s Hi-Tech Crime Trends 2023/2024 also highlighted the sale of compromised ChatGPT credentials on the dark web, building upon past research. With more employees relying on ChatGPT for work optimization and its storage of past interactions, compromised logins could expose sensitive information, posing significant security risks for businesses.

From January 2023 to October 2023, Group-IB detected more than 225,000 logs up for sale on the dark web containing compromised ChatGPT credentials. Group-IB’s Threat Intelligence platform found these compromised credentials within the logs of information-stealing malware traded on illicit dark web marketplaces.

Notably, the number of compromised hosts with access to ChatGPT detected by Threat Intelligence between June 2023 and October 2023 was more than 130,000, an increase of 36% compared to the preceding five-month period (January-May 2023). The number of available logs containing ChatGPT logs peaked in the final month of the study – in October 2023 – when 33,080 were registered. Group-IB’s analysis found that the majority of the logs containing ChatGPT accounts were breached by the LummaC2 information stealer.

Double trouble: ransomware gangs and initial access brokers wreak havoc

Group-IB’s Threat Intelligence unit constantly monitors all ransomware activity and detected 4,583 companies that had their information, files, and data published on ransomware DLSs in 2023. This marks a growth of 74% compared to the previous year, when 2,629 such posts were made. Group-IB researchers note that the number of total ransomware attacks worldwide is likely to be much larger, with probable instances of organizations paying the ransom or groups deciding not to go ahead with their threat of publishing data on a DLS.

Companies based in North America most commonly appeared in the DLS posts of ransomware groups, accounting for 2,487 (or 54%) of the annual total, and more than double the corresponding figure in 2022 (1,192 companies). Roughly 26% of posts on ransomware DLSs related to companies from Europe (1,186, up 52% YoY) and 10% were from the APAC region (463, up 39% YoY).

The United States was the most common target for ransomware groups, as 1,060 US-based companies were the subject of ransomware DLS posts in 2023. The next most affected countries were Germany (129), Canada (115), France (103), and Italy (100). 

In terms of affected industries, attacks as per ransomware DLS on manufacturing (580 instances) and real estate (429) companies rose year-on-year by 125% and 165%, respectively, and these key sectors were the two most targeted worldwide. Notably, Group-IB observed a 88% year-on-year increase in ransomware DLS posts related to healthcare companies, and a 65% rise in posts concerning government and military organizations.

Throughout the reporting period, Group-IB experts uncovered 27 new advertisements for ransomware-as-a-service programs on dark web forums, including well-known groups such as Qilin, as well as other collectives that have yet to be seen in the wild. As was the case in 2022, LockBit was 2023’s most prominent ransomware-as-a-service group with 1,079 posts on its DLS (24% of the annual total). In second place was BlackCat with 427 posts (9% of annual total) and third was Clop (385 posts or 9%).

Researchers also found that Initial Access Brokers (IABs) are continuing to play a significant role in the ransomware market. In 2023, they found 2,675 instances of corporate put up for sale – almost an identical figure compared with 2022, when 2,702 offers were found.

Notably, Group-IB data shows that the average price for corporate access in 2023 was $2,470, which represents a 27% reduction compared to the preceding year. Group-IB analysts believe that this drop in average price is due to a rise in the number of new sellers entering the market that have lowered the price of their offers in order to attract buyers.

Companies in the United States (29%), the United Kingdom (4%) and Brazil (4%) were the most commonly featured in IAB offers. Professional services, government and military organizations, financial services, manufacturing, and real estate were the verticals that appeared most frequently.

APTitude test

Group-IB researchers discovered that the Asia-Pacific region was the world’s main battleground for nation-state sponsored threat actors, also known as advanced persistent threat (APT) groups last year. In sum, Group-IB attributed 523 attacks to nation-state actors across the globe in 2023.

Attacks on APAC organizations accounted for 34% of the global total, with Group-IB experts asserting that this may be due to the high level of financial technology development in this global economic hub in addition to geopolitical tensions. Europe was the second-most targeted region, accounting for 22% of all APT attacks, and the Middle East and Africa (MEA) was third (16% of APT attacks in 2023).

Unsurprisingly, government and military entities were the prime target of APT attacks in 2023, accounting for 28% of the annual figure. This strengthens the theory of Group-IB’s Threat Intelligence unit that APT actors are predominantly striving to gain access to strategically important evidence and weaken government entities in their country or region of target. Financial services (6%), telecommunications (5%), manufacturing, IT and media (all 4%) were also heavily affected, Group-IB researchers found.

In the past year, prominent APT groups, including the North Korean collective Lazarus, launched new tactics. Lazarus executed the first-ever double supply chain attack, exploiting a vulnerability in X_TRADER, a software by Trading Technologies. This allowed access to the network of the widely-used 3CX Desktop App for VoIP calls, compromising a wide range of 3CX clients. Group-IB researchers also noted APT groups’ ongoing malicious use of legitimate services like Dropbox, OneDrive, Google Drive, and messengers like Telegram.

Turbulence ahead

In 2023, cyber threats shifted focus from Windows and Android to Apple platforms due to their rising popularity and market share, with iOS becoming increasingly targeted. Malware spread through the App Store, alongside increased use of Apple cloud services, contributed to this trend. By March 6, 2024, Apple is expected to allow third-party app stores for iOS apps in Europe, posing security concerns amidst 1.7 million app rejections in 2022. Threat actors have already adapted Android schemes to iOS, exemplified by GoldFactory and the GoldPickaxe.iOS malware – аctive in Thailand and Vietnam – which prompts victims to record videos of their faces and submit them to the threat actors, which could be used by the latter to gain unauthorized access to the victim’s banking accounts. Additionally, the number of sales posts on the most popular underground forums (xss[.]is and exploit[.]in) for information stealers designed to operate on macOS increased fivefold in 2023, from 8 in 2022 to 49.

Javascript sniffers, also known as malicious JavaScript code implanted in compromised websites designed to intercept payment card details from customers who make online transactions, are also likely to pose a risk to online store owners, consumers, and banks in 2024. Group-IB researchers discovered 5,037 websites compromised with JS-sniffers in 2023, of which 2,474 were unique. A total of 14 new JS-sniffer families were also discovered in 2023, highlighting the continued development of this threat.

“As highlighted by Group-IB’s Hi-Tech Crime Trends 2023/2024 report, the rise of AI in both legitimate businesses and the cybercriminal underworld was a critical trend of 2023. With the increased misuse of ChatGPT and the development of underground LLM tools, the potential for sophisticated attacks has escalated, compounded by the alarming surge in compromised ChatGPT credentials. This along with cybercriminals’ increased interest in malware designed for macOS demonstrates that it is imperative for organizations to recognize and address this evolving threat landscape, safeguarding sensitive information and fortifying cybersecurity measures to mitigate risks posed by AI-driven cybercrime,” Dmitry Volkov, CEO at Group-IB, said.

A full round-up of the top global threats and invaluable insights from the Group-IB Threat Intelligence unit can be found in the full Hi-Tech Crime Trends 2023/2024 report.

View original content to download multimedia:https://www.prnewswire.com/news-releases/group-ib-reveals-hi-tech-crime-trends-2324-surge-in-ransomware-against-backdrop-of-growing-ai-macos-threats-302075538.html

SOURCE Group-IB

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

Citi Singapore receives dual award recognition from FinanceAsia and Forbes

Published

on

By

Citi named Best International Bank and Best International Investment Bank in Singapore by FinanceAsia for the second year in a rowCiti ranked as #1 in Singapore among Forbes World’s Best Banks 2026

SINGAPORE, April 27, 2026 /PRNewswire/ — Citi Singapore today announced that it was conferred awards by both FinanceAsia and Forbes, underscoring its leading position in the financial industry.

The bank won multiple accolades from FinanceAsia, including ‘Best International Bank’ and ‘Best International Investment Bank’ in Singapore for the second year running. It was also ranked first in Singapore amongst Forbes World’s Best Banks 2026.

FinanceAsia Awards 2026

FinanceAsia, a leading Hong Kong-based financial publication reporting on Asia Pacific’s financial and capital markets, recognized Citi’s strong financial performance, as well as its commitment to client service and innovation across various segments of its institutional and wealth management businesses in Singapore.

Besides the ‘Best International Bank’ and ‘Best International Investment Bank’ awards, Citi also won ‘Best International ECM House’ and ‘Best International M&A House’ in Singapore.

“We are incredibly honored to receive these significant recognitions from FinanceAsia and Forbes,” said Lee Lung Nien, Citi Country Officer for Singapore. “These awards are a testament to the dedication and hard work of our teams, who consistently strive to deliver exceptional value and service to our clients. Singapore remains a critical hub for Citi, and these accolades reinforce our strategy and commitment to driving growth and innovation in this market.”

Forbes World’s Best Banks 2026

Citi’s #1 ranking in Singapore in the prestigious Forbes World’s Best Banks 2026 list is based on a comprehensive survey conducted by Forbes and Statista. Over 50,000 consumers from 34 countries were engaged for this survey in 17 different languages.

Survey participants evaluated banks where they currently have a checking or savings account (within the last three years), or that they knew through family or friends. They shared how satisfied they were with each bank and whether they would recommend it to others, then rated each on trustworthiness, terms and conditions, digital services, customer service and financial advice.

Yeo Wenxian, Head of Wealth for Asia South, said “We are honored to be recognized by FinanceAsia and Forbes. The accolades are a powerful affirmation of the trust our clients place in us and the unwavering commitment of our teams. The awards fuel our determination to keep raising the bar, serving with excellence, and delivering wealth management experiences centered on our clients’ needs.”

These awards reflect Citi Singapore’s robust performance, strategic initiatives, and client-centric approach, solidifying its reputation as a pre-eminent financial partner in the region.

About Citi 
Citi is a preeminent banking partner for institutions with cross-border needs, a global leader in wealth management and a valued personal bank in its home market of the United States. Citi does business in more than 180 countries and jurisdictions, providing corporations, governments, investors, institutions and individuals with a broad range of financial products and services.

Additional information may be found at www.citigroup.com | X: @Citi | LinkedIn: www.linkedin.com/company/citi | YouTube: www.youtube.com/citi | Facebook: www.facebook.com/citi 

 

View original content to download multimedia:https://www.prnewswire.com/apac/news-releases/citi-singapore-receives-dual-award-recognition-from-financeasia-and-forbes-302753869.html

SOURCE Citi

Continue Reading

Technology

“Pretty Messy” Completes Jūji’s Debut Album Journey — A Luminous Title Track About Embracing Pain and Moving Forward

Published

on

By

BANGKOK, April 27, 2026 /PRNewswire/ — Thai indie pop–jazz outfit Jūji gracefully wraps up its debut full-length album with “Pretty Messy,” a beautifully crafted title track that invites listeners to embrace past wounds before stepping into the future.

Based in Chiang Mai, Thailand, and currently signed to Melodic Corner, Jūji has steadily captured audiences with its signature blend of indie pop and jazz, weaving deeply personal narratives in both English and Japanese. Its growing international presence includes performances at Bangkok Music City 2026 in Thailand, Music Lane Festival Okinawa 2026 in Japan, and Minrock Festa 2025 in Busan, South Korea.

Following these international appearances, Jūji reaches a defining milestone with the release of its debut full-length project, The 1st Album, culminating in “Pretty Messy” — a reflective and healing composition that encourages listeners to find beauty and meaning within life’s imperfections.

Finding Beauty in Imperfection

“Pretty Messy” explores the process of accepting and embracing sadness. Inspired by real-life experiences, the track reflects on memories, emotional baggage, and the inevitable act of letting go. At its core, it offers a message of quiet optimism: that pain, in hindsight, can reveal its own kind of beauty — especially once we find the strength to move forward.

A Journey Through Love, Longing, and Self-Discovery

As part of The 1st Album, “Pretty Messy” completes a narrative arc centered on love in its many forms — spanning self-discovery, heartbreak, infatuation, and even the longing for something that may never exist.

Over the past year, listeners have followed this journey through standout tracks including “Moon Or Stars,” “You,” “More & More,” “Never This Far Away Gone (All In),” “No Turning Back,” “Forbidden Love,” and “Dreamland,” all leading to the album’s poignant conclusion.

The Sound of Jūji

The 1st Album showcases Jūji’s distinctive indie pop–jazz sensibility, enriched by each member’s unique musical influences. The result is a cohesive body of work that feels both dreamy and sincere — capturing the emotional complexity and quiet vulnerability of the human experience.

Watch & Listen

Experience the beauty of imperfection in Jūji’s “Pretty Messy,” now available as an official music video on YouTube via Melodic Corner. The 1st Album is also available on all major streaming platforms.

Stay connected with Jūji for upcoming projects and uniquely curated content across all official channels.

Follow Jūji
YouTube : https://youtube.com/@jujiband.official?si=Oqz9qvv59XMdlTCY
Instagram : https://www.instagram.com/jujiband.official/?hl=en
Tiktok : https://www.tiktok.com/@jujiband.official?is_from_webapp=1&sender_device=pc

View original content to download multimedia:https://www.prnewswire.com/apac/news-releases/pretty-messy-completes-jjis-debut-album-journey–a-luminous-title-track-about-embracing-pain-and-moving-forward-302747075.html

SOURCE Melodic Corner

Continue Reading

Technology

Protiviti Congratulates Brand Ambassador Matt Fitzpatrick as Fitzpatrick Brothers Win Zurich Classic of New Orleans

Published

on

By

Alex Fitzpatrick Earns PGA TOUR Card

MENLO PARK, Calif., April 26, 2026 /PRNewswire/ — Protiviti Golf Brand Ambassador and professional golfer Matt Fitzpatrick continued his strong 2026 season with a victory at the Zurich Classic of New Orleans alongside his brother, Alex Fitzpatrick. The Fitzpatrick brothers delivered a composed and cohesive performance throughout the team-format event, completing rounds of 64-65-57-71 (-31). The win secured Alex Fitzpatrick his first PGA TOUR card, marking a significant milestone in his professional career.

This marks Matt Fitzpatrick’s third win of the season, most on the PGA Tour, the 14th professional win of his career, and fifth on the PGA Tour. Fitzpatrick is currently No.1 on the FedEx Cup ranking and No. 3 in the Official World Golf Ranking, the highest ranking of his career. 

To commemorate Fitzpatrick’s win, Protiviti donated 25,000 meals through its “Birdies for Meals” campaign. Since its launch in 2021, the Birdies for Meals program has already donated more than 825,000 meals to people in need. 

“Congratulations to Matt Fitzpatrick and Alex Fitzpatrick on an outstanding victory—an inspiring showcase of chemistry and consistency. We also applaud Alex on earning his PGA TOUR card, a significant step in his career,” said Joseph Tarantino, Protiviti’s president and CEO. “In celebration of this win, Protiviti will donate 25,000 meals through our Birdies for Meals campaign, extending the impact well beyond the course.”

As Matt Fitzpatrick’s Official Performance Data Partner, Protiviti collaborates closely with Matt and his coaching team to enhance performance through advanced analytics and technology. By leveraging Microsoft technologies, Protiviti has developed a custom analytics platform, tailored dashboards, and a mobile application that streamline data collection and deliver real-time, shot-level insights. These tools enable more informed, data-driven decision-making across practice and competition, helping identify trends, refine preparation, and improve consistency. Learn more at www.protiviti.com/golf-data.

“It has been an incredible opportunity to work with Matt and see Protiviti’s work play a role in his on-course success. Just as we do with many clients, our team has built a bespoke program leveraging emerging technologies, advanced analytics and artificial intelligence to provide Matt, his caddie, and coaches with analysis and insights that aid in his preparation and guide strategy for each event he plays,” said Nick Ciafardini, associate director, Innovation for Protiviti.

“This win is surreal for me, especially doing it alongside my brother. I’m incredibly proud of Alex earning his PGA TOUR card—it’s a huge milestone for him and one we’ll always share. I’m also so grateful for the unwavering support from my family, my team, and my partners at Protiviti, whose data-driven approach to performance has become a key part of my preparation and constant pursuit of improvement,” said Matt Fitzpatrick.

After taking control with a historic 15-under in the fourball third round, the Fitzpatrick brothers briefly dropped the lead in the final round. With the tournament on the line at the 18th, they delivered a clutch closing sequence to seal the victory. Matt’s precision tee-to-green and Alex’s timely putting proved decisive, highlighting their chemistry under pressure.

Other notable Fitzpatrick wins include the 2015 British Masters, 2016 Nordea Masters, the 2016, 2020, and 2025 DP World Tour Championships. On the PGA Tour, Fitzpatrick also won the 2022 U.S. Open, RBC Heritage (2023 & 2026) and the 2026 Valspar Championship. He has been a Protiviti brand ambassador since 2020.

For more information about Protiviti’s golf brand ambassador program, please visit www.protiviti.com/golf.

About Protiviti 
Protiviti (www.protiviti.com) is a global consulting firm that helps clients transform and protect their businesses, and respond to planned and unexpected events. Through a network of more than 90 offices in over 25 countries, Protiviti and its independent and locally owned member firms deliver deep expertise and tailored capabilities across technology, artificial intelligence, data, operations, finance, legal, compliance, HR, marketing, digital, risk, and internal audit – enabling organizations to accelerate innovation, navigate risks and safeguard what matters most.

Named to the Fortune 100 Best Companies to Work For® list since 2015, Protiviti Inc. has served more than 80 percent of Fortune 100 and nearly 80 percent of Fortune 500 companies. The firm also works with government agencies and smaller, growing companies, including those looking to go public. Protiviti Inc. is a wholly owned subsidiary of Robert Half (NYSE: RHI).

View original content to download multimedia:https://www.prnewswire.com/news-releases/protiviti-congratulates-brand-ambassador-matt-fitzpatrick-as-fitzpatrick-brothers-win-zurich-classic-of-new-orleans-302753847.html

SOURCE Protiviti

Continue Reading

Trending