Security News > 2021 > March > Three Top Russian Cybercrime Forums Hacked

Three Top Russian Cybercrime Forums Hacked
2021-03-04 15:01

Over the past few weeks, three of the longest running and most venerated Russian-language online forums serving thousands of experienced cybercriminals have been hacked.

Members of all three forums are worried the incidents could serve as a virtual Rosetta Stone for connecting the real-life identities of the same users across multiple crime forums.

"We are getting messages that the forum's databases were filched after all when the forum was hacked. Everyone's account passwords were forcibly reset. Pass this information to people you know. The forum was hacked through the domain registrar. The registrar was hacked first, then domain name servers were changed, and traffic was sniffed."

According to Intel 471, on March 1, 2021, the administrator of the Exploit cybercrime forum claimed that a proxy server the forum used for protection from distributed denial-of-service attacks might have been compromised by an unknown party.

"Three forums in one month is just weird. I don't think those were regular hackers. Someone is purposefully ruining forums."

From the blog post they just published on these events: "In February, the administrator of another popular cybercrime forum, Crdclub, announced the forum sustained an attack that resulted in the compromise of the administrator's account. By doing so, the actor behind the attack was able to lure forum customers to use a money transfer service that was allegedly vouched for by the forum's admins. That was a lie, and resulted in an unknown amount of money being diverted from the forum. The forum's admins promised to reimburse those who were defrauded. No other information looked to be compromised in the attack."


News URL

https://krebsonsecurity.com/2021/03/three-top-russian-cybercrime-forums-hacked/