Prince Group is a Cambodia-based transnational criminal organization accused by U.S. and U.K. authorities of operating industrial-scale online fraud and cryptocurrency laundering networks. The organization is led by Cambodian national Chen Zhi, also known as Vincent, and has been described as running large-scale pig-butchering and romance-baiting investment scams since approximately 2015 through a network of more than 100 shell and holding companies spanning more than 30 countries. Authorities have also linked the group to associated entities including Huione Group, Jin Bei Group, Byex, and other Prince Group-controlled or Prince Group-linked companies used to provide financial services, laundering, and operational support.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
Who, where, and (when attributed) which flag flies behind the operation. Pulled from open-source reporting and Mallory's analyst review.
Sectors the actor has been observed targeting.
Geographies tied to known operations.
Attributed origin per open-source reporting.
5 distinct techniques observed across reporting, grouped by tactic. Hover any cell for the evidence excerpt; click through for MITRE's full description.
13 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Alleged criminal enterprise tied to large-scale scam-center activity, money laundering, and 'pig butchering' fraud proceeds.
A sanctioned transnational criminal organization accused of operating industrial-scale cyberfraud/scam compounds staffed by trafficked workers and supported by affiliated financial and cryptocurrency entities.
カンボジアの強制労働型詐欺拠点を背景に、ロマンス詐欺や投資詐欺を大規模運用し、暗号資産で国際的に資金洗浄を行ったとされる組織犯罪グループ。人身売買・現代奴隷労働に依存した詐欺拠点運営が言及され、制裁・資産差押えの対象となった。
Criminal organization linked (by law enforcement seizures) to large-scale cryptocurrency-related illicit activity; referenced in the context of major asset seizures tied to fraud/scam ecosystems.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.