Helix data extortion group linked to BlackFile, ShinyHunters

Security researchers at ReliaQuest have identified a new data extortion group called 'Helix' that uses sophisticated social engineering and phishing techniques. The group targets high-visibility employees to gain access to identity systems and SharePoint data, showing operational links to other known threat actors.
Why it matters
The emergence of Helix highlights the evolving nature of cyber-extortion, where attackers prioritize identity theft over traditional malware to maintain persistence.
ReliaQuest has identified a previously unreported data extortion group known as Helix as part of a wider campaign against multiple targets.
The article is a technical report on cybersecurity threats based on research findings.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in