Multiple reports say hackers are conducting a ransomware-related campaign that targets major U.S. financial institutions and private equity firms. According to the outlets, the attackers use phishing tactics that impersonate legitimate IT support to trick employees into providing credentials. The campaign is described as relying on fake IT calls and fraudulent websites designed to capture passwords and other authentication information. Both sources indicate the targets include prominent firms such as Blackstone, along with other organizations associated with financial services and private equity. One outlet also cites data suggesting the use of attacker-created websites specifically aimed at employees. The reports present the activity as part of a broader effort to obtain login details and access before attempting further harm. No information in the provided excerpts confirms successful breaches, specific amounts demanded, or whether ransom demands are tied to each individual target. The reports focus on the methods used to compromise employee accounts and the range of firms affected.