We use third-party cookies that help us analyze how you use this website, store your preferences, and provide the content and advertisements that are relevant to you. However, you can opt out of these cookies by checking "Do Not Sell or Share My Personal Information" and clicking the "Save My Preferences" button. Once you opt out, you can opt in again at any time by unchecking "Do Not Sell or Share My Personal Information" and clicking the "Save My Preferences" button.
Between July 1, 2024, and December 31, 2024, 50% of Scattered Spider’s phishing domains targeted the finance & insurance sector. This exposes the group’s clear focus on industries it believes to have high monetization potential, likely exploiting the sector’s critical need to avoid operational downtime and its management of vast stores of data.
The most prevalent attack types targeting the sector, which we’ll examine further in the report, include:
*Business email required.