Welcome to BlackFile: Inside a Vishing Extortion Operation
Source: DataBreaches.net · Category: Threat Actor & Campaign
UNC6671 (BlackFile) operates a sophisticated vishing and SSO-compromise extortion campaign bypassing MFA via adversary-in-the-middle techniques. Law firms are prime targets due to high-value client data; this threat bypasses standard security controls. Immediate escalation for security posture review recommended.