#Group-IB
Memorial to the 72 known Australian men and women who came to fight against fascism in Spain, 15 of whom died. Victorian Trades Hall Council, Melbourne. Via IB group on FB.
November 4, 2025 at 8:48 AM
Flying with IB tonight, no group 0 privileges 😢
October 25, 2024 at 12:55 PM
mentioned this before but i saw Vertigo on a very nice IB technicolor print at museum of the moving image and when the nun appears out of the darkness right at the end there were a group of teen girls in the front row that literally SCREAMED and it was like i felt Hitchcock smile from the beyond
Got me thinking.. What's the strongest reaction you've seen an audience member have to a scene in a cinema?

During the birthday party scene in SIGNS I saw a whole row of young women literally throw their popcorn in the air like a cartoon.
Someone in my audience had a very audible negative reaction to the dog scene in TOGETHER. So that was fun!
July 19, 2026 at 2:01 PM
Pic of the amazing group of Marine techs deploying our Megacore off the back of the RV/IB Palmer to collect sediment samples on our cruise in 2023 (NBP23-03) in East Antarctica. Sediments used for biodiversity, microbial genomics, eDNA, etc. Sunsets/sunrises in Antarctica are the best ! 🧪🦑🐧🌎🇦🇶🧬
November 18, 2024 at 12:37 PM
New RemControl Android banking trojan spotted in the wild

RemControl devs tricked an AI coding assistant that it was creating a parental monitoring application but used the code for the trojan's backend servers

www.group-ib.com/blog/remcont...
RemControl: AI Built the Overlays. Victims Lose their PINs
Group-IB uncovers RemControl, a new Android banking trojan targeting European, Middle Eastern and Canadian banks, whose criminal infrastructure was unknowingly built by AI.
www.group-ib.com
September 24, 2026 at 12:03 AM
This is a very interesting report from Group-IB.

The company believes it found one of the PhaaS platforms—Phoenix System—working with SMS blaster operations

www.group-ib.com/blog/phoenix...
Phoenix Rising: Exposing the PhaaS Kit Behind Global Mass Phishing Campaigns
While analyzing global smishing operations spanning APAC, LATAM, Europe, and MEA, Group-IB researchers uncovered the 'Phoenix System' administrative panel, a centralized Phishing-as-a-Service (PhaaS) ...
www.group-ib.com
April 30, 2026 at 11:08 AM
IB, or Identity Block. Neo-Nazi group in a couple of countries.

Also could refer to 1992, a year in which the British Neo-Nazi group C18 was founded.
April 5, 2026 at 5:25 PM
Game Number 29 Star Wars Zero Company

Which on my IB page this is my 250th game beaten! Quite a great game for that honor as it masterfully fuses Star Wars with XCOM tactical battles! Not to mention Zero Company is a lovable group of mercenaries and I really dug the story. Here’s Miami Ohio Hawks:
September 23, 2026 at 3:15 PM
New Public Health Alert: Public health response to clade Ib mpox with multiple exposures in congregate living settings

This report details how a person exposed 17 people at 2 group homes to the disease.

More from @nejm.org & CIDRAP: ow.ly/jnTP50ZhBfV
June 26, 2026 at 2:51 PM
🔒記事

『Group-IBはAIによるディープフェイクで金融機関の生体認証を回避する攻撃手法を解説した。インドネシアでは1100件以上の詐欺が確認され、被害額は200億円越えを超えるという。』

生体認証すら突破 ディープフェイクを駆使した高度な詐欺手法の全貌
www.itmedia.co.jp/enterprise/a...
生体認証すら突破 ディープフェイクを駆使した高度な詐欺手法の全貌
Group-IBはAIによるディープフェイクで金融機関の生体認証を回避する攻撃手法を解説した。インドネシアでは1100件以上の詐欺が確認され、被害額は200億円越えを超えるという。
www.itmedia.co.jp
December 8, 2024 at 10:18 AM
Kort fortalt går det ut på at et "botnet", ofte bestående av tusenvis og av og til millioner av kompromitterte ("hackede") maskiner som servere på internett og folk sine PCer som alle sammen sender en liten datastrøm mot målet, her Digdir.

Derav "distribuert".
Botnets, explained
YouTube video by Group-IB
www.youtube.com
August 26, 2026 at 11:52 AM
Last night I attended my 25 year high school reunion.

Seeing everyone again was great, but most importantly I got to thank my 11th grade history teacher for telling me about “grundislav.”
October 11, 2025 at 8:03 PM
Group-IB researchers have spotted a ransomware strain (named DeadLock) abusing blockchain smart contracts for its operations.

The technique has been used before by APT crews and other cybercrime ops, such as crypto miners and infostealers.

www.group-ib.com/blog/deadloc...
www.group-ib.com
January 15, 2026 at 10:58 AM
AfD had -on paper- a policy of distance from "true" Neonazis.
In reality, they never obeyed their own rules. In a recent move, AfD employs "true" Neonazis (1%, Heimat, NPD, IB) for running their party offices without holding mandates.
The AfD youth group GD is an IB project.
Was angeblich nicht geht bei der AfD: waschechte Neonazis. In Sachsen-Anhalt geht es doch. Laurens Nothdurft, früher Bundesführer der später verbotenen Heimattreuen Deutschen Jugend (HDJ), ist in Roßlau Ortsbürgermeister.
1
HDJ-Führungskader für die AfD gewählt: Deutschland. Aber tiefbraun.
In Roßlau, Sachsen-Anhalt, wurde der AfD-Politiker Laurens Nothdurft zum Ortsbürgermeister gewählt. Er war Mitglied eines verbotenen Neonazi-Vereins.
taz.de
February 6, 2026 at 6:50 AM
'ClickLock' Malware Coerces Mac Users Into Giving Up Passwords
'ClickLock' Malware Coerces Mac Users Into Giving Up Passwords
Security firm Group-IB has identified a new piece of macOS malware in the wild that pressures users into surrendering their passwords via a barrage of fake system prompts. Dubbed "ClickLock Stealer," the malware needs no exploits and no elevated privileges to work. Instead, the attack depends on the victim pasting a command into Terminal and running it. The command then executes a script, and everything else follows. Group-IB did not directly observe how victims are lured into pasting the command, but based on the script's behavior, the firm believes it's served through a fake "ClickFix" page posing as a Cloudflare check or browser verification step. Such pages instruct visitors to copy a command and run it in Terminal as a supposed "verification requirement." Once it's up and running, the script discreetly downloads several modules and shows a terminal-based loading animation mimicking a Cloudflare progress bar with browser verification. If a user declines the initial password dialog that appears, the malware starts locking system usage. Specifically, the malware kills every visible app every 210 milliseconds while the password prompt remains on screen, and the rest of the desktop stays unusable until the victim gives in. Meanwhile, another loop suppresses macOS security notifications for roughly six hours. If the user gives up and enters their password, a second, genuine macOS prompt is subsequently forced to the front, asking them to allow access to a Keychain item. Granting it hands over Chrome's "Safe Storage" AES key, which is what the browser uses to encrypt saved passwords and cookies. With the login password and Chrome's encryption obtained, ClickLock then harvests browser credentials, Keychain data, password manager vaults, and any cryptocurrency wallets, and then sends it all to a Telegram bot. It also installs a hidden backdoor disguised as an iCloud process to give it continual access. Group-IB says the campaign has been active since May 2026 and has targeted at least 100 victims across 33 countries. More than half of the victims were in Europe. Apple has already updated macOS to try to defend against this class of attack before it can get underway. In macOS Tahoe 26.4, it added a warning that appears when the user attempts to paste a command into Terminal from a website, chat, or message, and blocks the paste until the user reviews it. (Opera browser also recently added a similar feature.) In cases where macOS detects known malware, the paste is blocked outright with no override. Still, it should go without saying that no legitimate website will ever ask a user to paste a command into Terminal.Tag: macOS Security This article, "'ClickLock' Malware Coerces Mac Users Into Giving Up Passwords" first appeared on MacRumors.com Discuss this article in our forums
www.macrumors.com
July 20, 2026 at 1:19 PM
This group chat could have been an IB <GO>
June 12, 2026 at 3:37 PM
I love my spouse dearly, and he is so clueless sometimes. At the party he asked me why there were two distinct group of friends that did not mingle. I explained yet again about the IB cohort vs non-IB kids. That IB group is tight. There is a legit trauma bond component to it!
May 22, 2026 at 3:08 PM
#USfoodrecalls #USfoodsafety
Search the Feed & Pin it!
US Food Recalls + Safety

⚠️ Recall: E. COLI O26 (STEC) CONTAMINATION

Mountain West Food Group LLC
*FORWARD FARMS brand GRASS-FED GROUND BEEF 16 oz / 1 Ib

Dist to: CA, CO, ID, MT, PA, WA

12-27-25
www.foodsafetynews.com/2025/12/grou...
Ground beef recalled because of E. coli O26
No illnesses reported to date.
www.foodsafetynews.com
December 29, 2025 at 9:06 PM
Dear Visitors,
"Call me Garry, Please." 🌹
Although disturbed by the bizarre artwork, the group wandered around looking for an exit...

On April 17, [A Costume] The Ripper - Garry is about to join the quest!

#IdentityV
#IDVIb
#Ib
March 22, 2025 at 3:29 AM
Vietnamese officials have detained 20 suspects back in May linked to infostealer malware campaigns: vtv.vn/phap-luat/kh...

In a report last week, security firm Group-IB says the suspects appear to be behind the VietCredCare infostealer: www.group-ib.com/blog/tracing...
November 24, 2024 at 7:24 PM
260401 💬 SNS

#NMIXX #Lily from MBC K-POP April Fools Day
April 6, 2026 at 4:09 PM