Threat Intelligence

'Breeze Comet' Threat Group Targets Brazilian and Global Financial Systems

Dark Reading · 3 Sept 2026
Key Takeaway Regularly review your financial accounts and payment systems for unauthorised activity, and confirm that any banks or payment providers you rely on have strong fraud detection and security controls in place.

Security researchers have identified 'Breeze Comet' as one of the most advanced cybercriminal groups currently operating out of Brazil, with a track record of successfully infiltrating financial systems to divert money directly into their own accounts. The group's operations extend beyond Brazil, affecting financial institutions and related infrastructure on a global scale.

While specific technical details of the group's methods have not been fully disclosed, their focus on financial systems highlights the ongoing risk that sophisticated, financially motivated threat actors pose to banks, payment processors, and businesses that handle financial transactions. Groups like this often target weaknesses in authentication, payment processing, or third-party software supply chains to gain footholds before moving funds.

For Australian small businesses, this development is a reminder that financially motivated cybercrime groups are becoming increasingly organised and capable, and that no financial system—large or small—is inherently safe from targeting. Businesses that process payments, manage client funds, or rely on financial software vendors should stay alert to unusual account activity and ensure their financial partners maintain strong security practices.

financial cybercrime threat group Brazil payment fraud SMB security

Summarised by CISO AI from Dark Reading. We link back to every original so you can read it yourself.