Uptime Hamster: 10d 6h 54mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza Cosmic Lynx

Cosmic Lynx

0 incidentes 0 paises 0 sectores apt RU Ultimo: -
Ver en IntelTracker → APTTrail →
Cosmic Lynx is a financially motivated Russian cybercriminal organization that emerged in July 2019, specializing in highly sophisticated Business Email Compromise (BEC) campaigns. Unlike many BEC groups, Cosmic Lynx distinguishes itself by exclusively targeting large, multinational corporations, including many Fortune 500 and Global 2000 companies, seeking exceptionally high payouts. The group's primary motivation is financial gain, often attempting to defraud victims of millions of dollars. They are unique for their use of a dual impersonation scheme, typically involving a company's CEO and an external legal counsel, and for producing highly professional email communications free of grammatical errors, which helps them circumvent traditional BEC detection methods. While previously associated with banking trojans and click-fraud malware, Cosmic Lynx has evolved to focus on these high-return social engineering tactics.

Actores similares

lynxransomware · 414apt-cosmicdukeactor · 1hidden-lynxactor · 1Cosmic Leopardapt · 0
Tecnicas MITRE
T1059.003, T1110.003, T1566, T1071.001
Tipo
apt
Pais origen
RU
Motivacion
-
Impacto
5
Actualizado
Wed, 01 Ju