← Threat Actors & APT Groups

Breeze Comet

Every article that identifies Breeze Comet as responsible for or connected to reported activity.

MalwareThe Hacker News·4 hours ago

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

A financially motivated threat actor tracked as Breeze Comet (previously UNC5669) has been targeting Brazilian financial services, retail, and e-commerce organizations since 2024 by exploiting payment systems and banking software to execute fraudulent transactions. According to Google's Threat Intelligence Group and Mandiant, the group specializes in manipulating payment infrastructure to conduct unauthorized transfers across Brazilian financial networks. This campaign represents a sustained effort against Brazil's critical financial ecosystem with a focus on direct financial fraud rather than data theft.