{"id":265190,"date":"2026-06-05T14:22:00","date_gmt":"2026-06-05T18:22:00","guid":{"rendered":"https:\/\/news-you-need.com\/index.php\/2026\/06\/05\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure\/"},"modified":"2026-06-05T14:55:37","modified_gmt":"2026-06-05T18:55:37","slug":"silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure","status":"publish","type":"post","link":"https:\/\/news-you-need.com\/index.php\/2026\/06\/05\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure\/","title":{"rendered":"Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure"},"content":{"rendered":"<p><a href=\"https:\/\/securityaffairs.com\/193215\/cyber-crime\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure.html\">Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure<\/a><\/p>\n<p><a href=\"https:\/\/securityaffairs.com\/193215\/cyber-crime\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure.html\">https:\/\/securityaffairs.com\/193215\/cyber-crime\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure.html<\/a><\/p>\n<p>Publish Date: <a href=\"publish_date]\">2026-06-05 14:22:00<\/a><\/p>\n<p>Source Domain: <a href=\"securityaffairs.com\">securityaffairs.com<\/a><\/p>\n<p><h2>Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure<\/h2>\n<\/p>\n<p>\t\t\t\t\t\t\t<span> Pierluigi Paganini<\/span><br \/>\n\t\t\t\t\t\t\t<span><img decoding=\"async\" src=\"https:\/\/securityaffairs.com\/wp-content\/themes\/security_affairs\/images\/clock-icon.svg\" alt=\"\"\/> June 05, 2026<\/span><\/p>\n<p>\t\t\t\t\t\t<img decoding=\"async\" class=\"img-fluid mb-4\" src=\"https:\/\/i0.wp.com\/securityaffairs.com\/wp-content\/uploads\/2026\/06\/Silent-Ransom-Group.png?fit=665%2C360&#038;ssl=1\" alt=\"\"\/><\/p>\n<h2 class=\"wp-block-heading\">Researchers exposed the Silent Ransom Group \u2018s Fast Flux infrastructure as the FBI warns of ongoing attacks targeting U.S. law firms and businesses.<\/h2>\n<p class=\"wp-block-paragraph\">Resecurity uncovered the Silent Ransom Group (SRG)\u2019s Fast Flux network infrastructure and shares available intelligence with the cybersecurity community to disrupt their malicious activities and enable ISP\/DNS providers to counter this threat. <\/p>\n<p class=\"wp-block-paragraph\">\u201cResecurity is the first to uncover the SRG\u2019s Fast Flux network infrastructure and is sharing this intelligence with the cybersecurity community to disrupt their malicious activities and enable ISP\/DNS providers to counter this threat.\u201d reads the report published by Resecurity.<\/p>\n<p class=\"wp-block-paragraph\">The Silent Ransom Group, also known as Luna Moth, Chatty Spider, and UNC3753, is a cyber extortion group active since 2022 that focuses on stealing sensitive data and extorting victims rather than encrypting files. The group primarily targets organizations in sectors such as legal services, healthcare, hospitality, finance, and insurance.<\/p>\n<p class=\"wp-block-paragraph\">The experts also outlined the use of X-CSRF (Cross-Site Request Forgery) token to prevent indexing of their Data Leak Site (DLS) \u2013 a unique, secret, and unpredictable string that a server-side application generates and assigns to a user\u2019s session.<\/p>\n<p class=\"wp-block-paragraph\">The Federal Bureau of Investigation (FBI) recently issued an advisory about the SRG, which is actively targeting U.S.-based law firms and other industries through social engineering and in-person attacks.<\/p>\n<p class=\"wp-block-paragraph\">The Fast Flux nodes were identified in Latin America (Brazil, Mexico, Argentina, Ecuador, Colombia, Bolivia, Costa Rica, Peru, Panama), Eastern Europe (Bulgaria, Croatia, North Macedonia), Central Asia (Uzbekistan, Kyrgyzstan), Middle East\/Africa (Egypt, Saudi Arabia, Tunisia), East Asia (South Korea), and Caribbean (Jamaica,&#8230;<\/p>\n<p><a href=\"https:\/\/securityaffairs.com\/193215\/cyber-crime\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure.html\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure https:\/\/securityaffairs.com\/193215\/cyber-crime\/silent-ransom-group-srg-switching-to-dns-fast-flux-infrastructure.html Publish Date: 2026-06-05 14:22:00&#8230;<\/p>\n","protected":false},"author":1,"featured_media":265191,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/securityaffairs.com\/wp-content\/uploads\/2026\/06\/Silent-Ransom-Group.png","fifu_image_alt":"","footnotes":""},"categories":[15],"tags":[24],"class_list":["post-265190","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"_links":{"self":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/265190"}],"collection":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/comments?post=265190"}],"version-history":[{"count":1,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/265190\/revisions"}],"predecessor-version":[{"id":265192,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/posts\/265190\/revisions\/265192"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media\/265191"}],"wp:attachment":[{"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/media?parent=265190"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/categories?post=265190"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news-you-need.com\/index.php\/wp-json\/wp\/v2\/tags?post=265190"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}