FIN4 hacking team has targeted over 100 organizations since 2013, all of which are either publicly traded companies or advisory firms. FireEye experts have found nine C&C servers used by the FIN4 group, which moves stolen data over the Tor network. The FIN4 crew appears to be composed by American due to its deep knowledge of Wall Street dynamics and the used of English, slang. The group is not using any malware to steal sensitive data and user credentials, the experts discovered the usage of phishing email with lures appealing to investor and shareholder concerns.”]

