Threat groups like 0APT and ALP-001 are using generative AI to fabricate ransomware leak sites, inventing fake victims and data to pressure organizations into paying extortion demands. Insikt Group analysis exposed 0APT as fraudulent based on empty files, AI-generated scripts, and an implausibly large victim list claimed in a very short time. Even low-credibility fake leak sites create real operational pressure for defenders, who must spend time and resources validating whether a claimed breach is real. Combating this trend requires strong internal data governance combined with external threat intelligence to quickly disprove fabricated claims.
79 Impressions