FIN10
Also known as: g0051
[FIN10](https://attack.mitre.org/groups/G0051) is a financially motivated threat group that has targeted organizations in North America since at least 2013 through 2016. The group uses stolen data exfiltrated from victims to extort organizations. (Citation: FireEye FIN10 June 2017)
Most affected countries
No data yet.
Most affected sectors
No data yet.
Priority mitigations
MITRE ATT&CK mitigations that cover the most techniques used by this group.
- Privileged Account Management (5 techniques covered)
- User Account Management (4 techniques covered)
- Multi-factor Authentication (3 techniques covered)
- Password Policies (2 techniques covered)
- Operating System Configuration (2 techniques covered)
- Execution Prevention (2 techniques covered)
- Disable or Remove Feature or Program (2 techniques covered)
- Audit (2 techniques covered)
MITRE ATT&CK techniques
Recent victims
No data yet.
Claims are published by the criminal groups themselves and are unverified until the organisation or the press confirms them. Names of natural persons (sole traders, individual professionals) are anonymised under the GDPR. We never link to leak sites or stolen data. To request the removal or anonymisation of an entry, contact the site administrator.
Sources: RansomLook (CC BY 4.0), MITRE ATT&CK®, MISP Galaxy, Google News.