Google said ransomware hackers have targeted dozens of major U.S. financial firms, including Blackstone, Apollo, KKR, TPG, CME Group, Moody's, Bridgewater, and Bain Capital, using phone-based social engineering to steal employee credentials. The hackers created fake IT help desk websites to trick employees into divulging passwords and multi-factor authentication codes, rather than using advanced hacking techniques. Google stated that some victims have paid ransoms, but did not disclose their identities.