Cobalt hacker group that specializes in stealing money from banks and financial institutions has remained active. Group-IB discovered one of Cobalt’s phishing emails, aimed at banks in Russia and other former Soviet states. The spear-phishing email was an obvious ruse to lure users on a malicious site where they’d be infected with the CobInt trojan. Cobalt is known for silently infiltrating bank networks through employee accounts, infecting other computers on the local network until they find a PC that controls transactions.
Source: https://www.bleepingcomputer.com/news/security/cobalt-hacking-group-still-active-despite-leaders-arrest/