Dark Pools Research
Insights
Practitioner analysis of the schemes, threats and operating models our clients work against, written to be useful whether or not you use our products.
How mule networks cash out before the overnight review runsMule networks exist to move stolen money faster than an institution can review it. Following the funds from the first credit to the final withdrawal shows where detection has to sit, and why a nightly batch tends to arrive after the money has gone.Read the article
- SIM-swap account takeover: the signals in the first minutesIn a SIM-swap takeover, the attacker never has to break into the bank. They take control of the phone number the bank trusts, use it to reset access and move the money, usually within minutes of the swap.
- Election disinformation in local languages: what English-only monitoring missesIn multilingual countries, the conversations that shape an election often happen in local languages, in messaging groups and in voice notes. Monitoring that covers only English sees part of the picture and tends to see it late.
- Why every fraud alert should show its workA risk score on its own tells an investigator that something may be wrong, without saying what. Alerts that carry their evidence with them change how quickly cases are worked, how much noise a team has to absorb and how well filings hold up to scrutiny.
Get started
Take the next step
Talk to the team behind the research about the threats your organization faces.