Monitoring deep, dark and surface web to detect exposure of your sensitive data, secret projects and initiatives, privileged users, critical systems, IT infrastructure, and more.
Monitoring and alerting of third party data breaches impacting your employees’ emails, usernames, and personally identifiable information.
Assess the risk footprint and security posture of key business relationships to get a handle on external risk introduced through your extended attack surface.

Sign Up for Updates

Digital risk monitoring of key personnel with telemetry and risk metrics. VIPRecon provides broad coverage of social media, deep and dark web, as well as physical threat assessments.
Our Ransomware Response Readiness Assessment, Playbook and Table Top Exercise gives your organization the best chance to survive and recover.
Gain visibility of your digital footprint by reaching into the most active areas of the cyber underground.
Fully managed and tailored Threat Intelligence services that becomes an extension of your current security processes and provides real-time visibility on new threats.
Providing research and investigations into known threats, to save security teams time and stress during a cyber emergency.

Sign Up for Updates

GroupSense offers a comprehensive package of services for assessing and responding to ransomware attacks, including negotiations with threat actors.
Actively researching and monitoring threats from vendors or third-party companies that can affect organizational security.
Monitoring for threats to elections, VIPs, and more on social media to proactively prevent or mitigate digital risk.
Focusing on the threats and risks that matter to your security processes and providing intelligence and insights to prevent or mitigate digital risk.
Taking the next step in security services, by proactively taking down phishing sites or anonymously interacting with threat actors to provide better intelligence.
Active monitoring of your brand's digital assets to protect its reputation and stop further brand abuse from targeting unsuspecting victims.

Sign Up for Updates

Combining your cyber and fraud programs to effectively fight threat actors continually scamming or threatening assets within an organization.
Executives are prime targets for fraudulent activities, but with a proactive approach, any attacks or threats can be neutralized before causing any damage.
Governments, political parties and candidates must all act now to activate cyber threat intelligence services to harden their information security and get ahead of inevitable cyber threats to the election process.
Resouce Banner

Resources

Kaseya Gets Tool to Unlock Data After Ransomware Attack

By External Author on Jul 23, 2021 8:15:00 AM

The technology provider at the center of a ransomware attack this month said it obtained a tool to unlock data targeted by hackers in an incident that disrupted hundreds of firms in several countries.

Topics: News Ransomware

Podcast: Kurtis Minder, Ransomware Negotiator and CEO of Group Sense | What To Do When Your Data’s Being Held Ransom - Episode 27

By External Author on Jul 22, 2021 9:00:00 AM

Kurtis Minder joins Dominique Shelton Leipzig and David Biderman on the Decrypted Unscripted podcast to discuss how GroupSense’s team of cyberspies knows how to find where the bad guys are operating and work with clients to protect their data. He describes in detail how he became the “go-to” ransomware negotiator in the country. He also explains the dark web and how it helps criminals steal information and shares why his team has seen a steady increase in threat actors accessing data remotely over the last 12 months.

Topics: News Ransomware Podcast

Chat logs show how Egregor, an $80 million ransomware gang, handled negotiations with little mercy

By External Author on Jul 21, 2021 9:00:00 AM

In a series of ransomware payment negotiations last December, operatives from a gang known as “Egregor” alternated from treating their victims with surprising civility, and behaving like cartoonish movie villains.

Topics: News Ransomware

Podcast: What’s Next for REvil’s Victims?

By External Author on Jul 19, 2021 7:15:00 PM

Last week, the servers of ransomware giant REvil vanished.

Topics: News Ransomware Podcast

Podcast: Ransomware - a very 21st century crime

By External Author on Jul 18, 2021 8:45:00 AM

The rush to go digital during Covid-19 has coincided with a marked rise in ransomware attacks.

Topics: News Ransomware Podcast

Podcast: Threat actors changing ransomware tactics

By External Author on Jul 15, 2021 10:00:00 AM

Guest Kurtis Minder from GroupSense joins Dave to discuss divergent ransomware trends, the guys have a listener reminder about it being CompTIA, Joe, Dave has a story about a coupon scam in the Houston area, Joe's story is about a real estate rental scam and a scammer who likes to talk about his work, and our Catch of the Day is from a listener named Craig with an email about an unprofessional colleague and a questionable attachment.

Topics: News Ransomware Podcast

REvil gang suddenly goes silent leaving victims unable to recover systems

By External Author on Jul 14, 2021 8:45:00 AM

The dark web sites operated by the notorious REvil ransomware group suddenly went offline on Tuesday, prompting speculation that the US or Russian governments stepped in. Meanwhile, victims and the security companies working for them to recover data have been put in a more difficult situation.

Topics: News Ransomware

Ransomware gang REvil's websites become unreachable

By External Author on Jul 13, 2021 4:15:00 PM

WASHINGTON, July 13 (Reuters) - Websites run by the ransomware gang REvil suddenly became unreachable on Tuesday, sparking widespread speculation that the group had been knocked offline.

Topics: News Ransomware

Hacking group behind widespread ransomware attacks disappears online

By External Author on Jul 13, 2021 3:45:00 PM

A cybercriminal group that took responsibility for a massive ransomware attack that affected hundreds of businesses this month has disappeared from sight online.

Topics: News Ransomware

Russia’s most aggressive ransomware group disappeared. It’s unclear who disabled them.

By External Author on Jul 13, 2021 1:30:00 PM

Just days after President Biden called President Vladimir V. Putin of Russia and demanded that he act to shut down ransomware groups that are attacking American targets, the biggest of them has gone off-line. The mystery is who made that happen.

Topics: News Ransomware