New “Karakurt” Threat Group is Gaining Attention Through Multiple and Frequent Extortion Attacks

Stu Sjouwerman | Dec 30, 2021

New Karakurt Threat GroupA new warning from Accenture Security highlights this new cybercriminal group making waves that focuses on a "data breach and extortion” MO rather than relying on ransomware.

Very seldom do I see notices about a specific threat group unless one of two things are true – either they have successfully attacked a high-profile victim organization, or there are jumping onto the scene with lots of detected attacks.

In the case of Karakurt, it may be a bit of both.

According to a new notice put out by Accenture Security, Karakurt has been a focus of theirs since only September 2021. With a supposed 40 victim organizations in only 90 days, this cybercriminal group appears to be a formidable adversary. And given Accenture’s customers are typically larger Enterprises with $1B+ in revenues, it’s likely that Karakut has successfully attacked a well-known organization that has somehow stayed out of the headlines.

The group maintain a site promoting the “Karakurt hacking team” and provides press releases on attacks and leaked files.

Karakurt-group-main-page-724-701

Source: Accenture Security

According to Accenture, 95% of Karakurt’s victim organizations are in North America with the most attacked industries (based on the limited attack data to-date) being professional services, technology, healthcare, and retail.

Accenture feels we’ve only just seen the beginning of Karakurt, stating “Accenture Security assess with high confidence that the group's operations have just begun, and that Karakurt activity will likely continue to proliferate into the foreseeable future, impacting additional victims.”

See KnowBe4 Security Awareness Training in Action

See how you can efficiently safeguard your organization from sophisticated social engineering threats.

Request a Demo

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.