Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems
Summary
A financially motivated threat actor known as Breeze Comet (formerly UNC5669) has been targeting Brazilian financial services, retail, and e-commerce organizations since 2024. This group specializes in manipulating payment systems and banking software within Brazil to execute fraudulent transfers.
IFF Assessment
Breeze Comet's focus on executing fraudulent transactions poses a direct threat to financial institutions and businesses, making it bad news for defenders.
Defender Context
Defenders should be aware of threat actors like Breeze Comet that specialize in exploiting financial systems. This highlights the need for robust transaction monitoring, anomaly detection, and secure coding practices within financial and e-commerce platforms, particularly in regions targeted by such actors.