FIN10
1 incidentes
0 paises
0 sectores
apt UNKNOWN Ultimo: 2026-05-25
Aliases: FIN10, G0051, "Casinos, pero sin evidencia directa
FIN10 is a financially motivated cyber extortion group first observed as early as 2013, with activity continuing through at least 2016. The group's primary motivation is the theft of corporate business data and personally identifiable information, which they use to extort victim organizations for financial gain. FIN10 distinguishes itself by exclusively using publicly available software and tools, such as Metasploit, PowerShell Empire, and SplinterRAT, rather than developing custom malware. If ransom demands are not met, the group escalates its tactics by publicly leaking stolen data and, in some cases, deploying destructive batch scripts to delete critical operating system files and shut down systems. FIN10 has attempted to masquerade as various hacktivist groups, including 'Angels_Of_Truth' and 'Tesla Team', though evidence suggests their communications were translated.