Tuesday , January 21 2025

BreachForums Is Back, Led by ShinyHunters

After months of silence, the notorious cybercrime and hacking forum, BreachForums, has resurfaced under new management. ShinyHunters, a well-known hacking group, has seized control of the revived platform, sending shockwaves through the cybersecurity community and raising concerns among global law enforcement agencies.

The announcement of BreachForums’ return came from Baphomet, one of the administrators of the original forum, via a PGP-signed message on Telegram. Baphomet, an active figure within the hacking community, left little doubt about the authenticity of the message, although skepticism remains due to the possibility of a honeypot operation.

Multiple Azure DevOps Vulns Allow To Inject CRLF Queries & Rebind DNS

Security researchers have found several vulnerabilities in Azure DevOps that could enable attackers to inject CRLF queries and carry out...
Read More
Multiple Azure DevOps Vulns Allow To Inject CRLF Queries & Rebind DNS

Intel holds 22 employees from one Bangladeshi University

Intel Corporation is a leading semiconductor chip manufacturer, employing at least 22 graduates from the Department of Applied Chemistry and...
Read More
Intel holds 22 employees from one Bangladeshi University

VPN Surge 1500% in USA after TikTok Shut Down

vpnMentor’s Research Team is monitoring the potential TikTok ban in the U.S., driven by national security and data privacy issues....
Read More
VPN Surge 1500% in USA after TikTok Shut Down

MITRE Launches D3FEND 1.0; The Milestone for Cybersecurity Ontology

MITRE launched D3FENDTM 1.0, a cybersecurity framework that provides a vocabulary and understanding of the cyber domain. D3FEND 1.0, funded...
Read More
MITRE Launches D3FEND 1.0; The Milestone for Cybersecurity Ontology

AWS Patches Multiple Vulns in WorkSpaces, AppStream 2.0

Amazon Web Services (AWS) has recently fixed two major security vulnerabilities in its cloud services: Amazon WorkSpaces, Amazon AppStream 2.0,...
Read More
AWS Patches Multiple Vulns in WorkSpaces, AppStream 2.0

Malware Trends Review 2024: Ever Recorded Cyber Threats

Last year saw a significant rise in cyber threats, with malware becoming more advanced and attack strategies more sophisticated. A...
Read More
Malware Trends Review 2024: Ever Recorded Cyber Threats

Botnet Exploits 13,000 MikroTik Devices Abusing Misconfigured DNS

A recent Infoblox Threat Intel report reveals a sophisticated botnet that exploits DNS misconfigurations to spread malware widely. This botnet,...
Read More
Botnet Exploits 13,000 MikroTik Devices Abusing Misconfigured DNS

CVE-2024-9042
Code Execution Vulnerability Found in Kubernetes Windows Nodes

A new security flaw traced, CVE-2024-9042, poses a serious risk to Kubernetes clusters with Windows worker nodes. It has a...
Read More
CVE-2024-9042  Code Execution Vulnerability Found in Kubernetes Windows Nodes

Hacker leaked 15k config files and VPN passwords of FortiGate firewall device

The hacking group "Belsen Group" has posted over 15,000 unique FortiGate firewall configurations online. The data dump, reportedly obtained by exploiting...
Read More
Hacker leaked 15k config files and VPN passwords of FortiGate firewall device

Registration open for 1st Agile Cyber Drill 2025

Registration open for "1st Agile Cyber Drill-2025" scheduled for February 26, 2025 online with an awards ceremony for 9 March...
Read More
Registration open for 1st Agile Cyber Drill 2025

Adding to the unfolding situation, a Telegram account using the alias ShinyHunters (@shinycorp) has emerged alongside Baphomet, taking charge of communicating with former users of BreachForums. This account has already begun sharing information and updates related to the forum’s operations, attracting attention from potential members and concerned individuals alike.

BreachForums, in its previous incarnation, served as a notorious hub for cybercriminals to exchange stolen data, discuss hacking techniques, and engage in illicit activities. Now under the control of ShinyHunters, the forum’s resurgence has raised serious concerns in the cybersecurity community.

ShinyHunters has gained infamy for their involvement in multiple high-profile data breaches, often targeting organizations to steal sensitive information for financial gain. Their modus operandi involves selling user data on both Clearnet and the dark web.

The return of BreachForums under ShinyHunters’ control has ignited fears of an increase in cyberattacks, data breaches, and facilitation of illegal activities on the platform. Law enforcement agencies and cybersecurity experts worldwide are closely monitoring the situation and urging organizations and individuals to remain vigilant regarding their online security.

In the past, BreachForums faced closure following the arrest of its owner, Conor Brian Fitzpatrick, also known as Pompompurin or Pom, after he had created it as an alternative to the seized RaidForums. The forum remained offline, with members gathering in a Telegram group called “The Jacuzzi” to discuss its future. The FBI was unable to seize the forum’s domain, thus keeping it out of their reach.

ShinyHunters gained prominence in 2020 through their involvement in major data breaches, such as those affecting Tokopedia, a popular Indonesian online marketplace, and Microsoft’s GitHub repository. They are notorious for targeting organizations with large user bases and stealing personally identifiable information (PII), login credentials, and financial details.

ALSO READ:

Trend Micro Unleashes the Power of Generative AI in Vision One Platform

While the true identities of ShinyHunters remain unknown, their activities and the scale of the breaches they have orchestrated have raised serious concerns about cybersecurity and data protection.

One alleged member of ShinyHunters, Sébastien Raoult, was arrested in June 2022 at Rabat international airport and identified as a 21-year-old French citizen. In January 2023, Raoult, also known as Sezyo, was extradited to the United States and pleaded not guilty to the charges against him. However, despite Raoult’s arrest, concerns persist regarding the reemergence of cyber threats associated with the ShinyHunters group.

Considering ShinyHunters’ history, organizations previously targeted by this group must take immediate action to strengthen their security systems. Implementing robust protocols and enhancing security measures are crucial steps to protect user data and mitigate the risk of future attacks.

 

Check Also

AI

AI-made nude images incident, one school, 50 female victim

Nearly half of the high school’s female students were victimized in AI based deepfake the …

Leave a Reply

Your email address will not be published. Required fields are marked *