Close Menu
    Facebook X (Twitter) YouTube LinkedIn
    Trending
    • UK needs more nuclear to power AI, says Amazon Web Services boss
    • One dead after Mexican navy training ship hits New York’s Brooklyn Bridge – as mayor says at least 19 injured | US News
    • HE CONFESSES LOVE TO MY BEST FRIEND!! (CUTE)
    • More Extreme Trump: UCLA’s Clausing on Policy Proposal
    • Moscow makes first retaliation attack after Ukraine’s strikes in Russia with U.S. missiles
    • Mystery bodies found across the city
    • The low-end consumer is about to feel the pinch as Trump restarts student loan collections
    • Argentina celebrates World Cup victory – BBC News
    Facebook X (Twitter) YouTube LinkedIn
    MORSHEDI
    • Home
      • Spanish
      • Persian
      • Swedish
    • Latest
    • World
    • Economy
    • Shopping
    • Politics
    • Article
    • Sports
    • Youtube
    • More
      • Art
      • Author
      • Books
      • Celebrity
      • Countries
      • Did you know
      • Environment
      • Entertainment
      • Food
      • Gaming
      • Fashion
      • Health
      • Herbs
      • History
      • IT
      • Funny
      • Opinions
      • Poets & philosopher
      • Mixed
      • Mystery
      • Research & Science
      • Spiritual
      • Stories
      • Strange
      • Technology
      • Trending
      • Travel
      • space
      • United Nation
      • University
      • war
      • World Leaders
    MORSHEDI
    Home » BBC reporter on talking to the hackers
    Latest News

    BBC reporter on talking to the hackers

    morshediBy morshediMay 18, 2025No Comments7 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    BBC reporter on talking to the hackers
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Joe Tidy

    Cyber correspondent

    BBC A man with brown hair and wearing a light blue shirt looks in contemplation.BBC

    Joe Tidy interacted with hackers who claimed to have accomplished the M&S and Co-op hack

    Virtually day by day, my cellphone pings with messages from hackers of all stripes.

    The great, the dangerous, the not-so-sure.

    I have been reporting on cyber safety for greater than a decade, so I do know that a lot of them like to speak about their hacks, findings and escapades.

    About 99% of those conversations keep firmly locked in my chat logs and do not result in information tales. However a latest ping was unimaginable to disregard.

    “Hey. That is Joe Tidy from the BBC reporting on this Co-op information, right?” the hackers messaged me on Telegram.

    “We now have some information for you,” they teased.

    After I cautiously requested what this was, the individuals behind the Telegram account – which had no title or profile image – gave me the within monitor on what they claimed to have accomplished to M&S and the Co-op, in cyber assaults that triggered mass disruption.

    By means of messages back-and-forth over the subsequent 5 hours, it turned clear to me that these obvious hackers have been fluent English audio system and though they claimed be messengers, it was apparent they have been intently linked to – if not intimately concerned in – the M&S and Co-op hacks.

    They shared proof proving that that they had stolen an enormous quantity of personal buyer and worker info.

    I checked out a pattern of the info that they had given me – after which securely deleted it.

    A shop fridge with almost empty shelves, and a sign stuck on the window which says "Sorry we are having some availability issues which will be resolved shortly"

    Buyers have been met with empty cabinets at some UK Co-op shops in latest weeks

    Messages that confirmed suspicions

    They have been clearly pissed off that Co-op wasn’t giving in to their ransom calls for however would not say how a lot cash in Bitcoin they have been demanding of the retailer in alternate for the promise that they would not promote or give away the stolen knowledge.

    After a dialog with the BBC’s Editorial Coverage crew, we determined that it was within the public curiosity to report that that they had offered us with proof proving that they have been answerable for the hack.

    I shortly contacted the press crew on the Co-op for remark, and inside minutes the agency, who had initially downplayed the hack, admitted to staff, clients and the inventory market concerning the important knowledge breach.

    A lot later, the hackers despatched me an extended offended and offensive letter about Co-op’s response to their hack and subsequent extortion, which revealed that the retailer narrowly dodged a extra extreme hack by intervening within the chaotic minutes after its laptop systems were infiltrated. The letter and dialog with the hackers confirmed what consultants within the cyber safety world had been saying since this wave of assaults on retailers started – the hackers have been from a cyber crime service known as DragonForce.

    Who’re DragonForce, you is likely to be asking? Primarily based on our conversations with the hackers and wider data, we’ve got some clues.

    DragonForce provides cyber felony associates numerous companies on their darknet website in alternate for a 20% minimize of any ransoms collected. Anybody can enroll and use their malicious software program to scramble a sufferer’s knowledge or use their darknet web site for his or her public extortion.

    This has grow to be the norm in organised cyber crime; it is often called ransomware-as-a-service.

    Essentially the most notorious of latest occasions has been a service known as LockBit, however that is all however defunct now partly as a result of it was cracked by the police final 12 months.

    Following the dismantling of such teams, an influence vacuum has emerged. Cue a tussle for dominance on this underground world, resulting in some rival teams innovating their choices.

    Energy battle ensues

    DragonForce not too long ago rebranded itself as a cartel providing much more choices to hackers together with 24/7 buyer assist, for instance.

    The group had been promoting its wider providing since a minimum of early 2024 and has been actively focusing on organisations since 2023, in keeping with cyber consultants like Hannah Baumgaertner, Head of Analysis at Silobeaker, a cyber danger safety firm.

    “DragonForce’s newest mannequin consists of options comparable to administration and consumer panels, encryption and ransomware negotiation instruments, and extra,” Ms Baumgaertner stated.

    As a stark illustration of the power-struggle, DragonForce’s darknet web site was not too long ago hacked and defaced by a rival gang known as RansomHub, earlier than re-emerging a couple of week in the past.

    “Behind the scenes of the ransomware ecosystem there appears to be some jostling – that is likely to be for prime ‘chief’ place or simply to disrupt different teams so as to take extra of the sufferer share,” stated Aiden Sinnott, senior menace researcher from the cyber safety firm Secureworks.

    Who’s pulling the strings?

    DragonForce’s prolific modus operandi is to publish about its victims, because it has accomplished 168 occasions since December 2024 – a London accountancy agency, an Illinois metal maker, an Egyptian funding agency are all included. But to date, DragonForce has remained silent concerning the retail assaults.

    Usually radio silence about assaults signifies {that a} sufferer organisation has paid the hackers to maintain quiet. As neither DragonForce, Co-op nor M&S have commented on this level, we do not know what is likely to be taking place behind the scenes.

    Establishing who the individuals are behind DragonForce is difficult, and it isn’t identified the place they’re positioned. After I requested their Telegram account about this, I did not get a solution. Though the hackers did not inform me explicitly that they have been behind the latest hacks on M&S and Harrods, they confirmed a report in Bloomberg that spelt it out.

    In fact, they’re criminals and could possibly be mendacity.

    Some researchers say DragonForce are primarily based in Malaysia, whereas others say Russia, the place many of those teams are considered positioned. We do know that DragonForce has no particular targets or agenda aside from earning profits.

    And if DragonForce is simply the service for different criminals to make use of – who’s pulling the strings and selecting to assault UK retailers?

    Within the early phases of the M&S hack, unknown sources instructed cyber information website Bleeping Pc that proof is pointing to a free collective of cyber criminals often called Scattered Spider – however this has but to be confirmed by the police.

    Scattered Spider isn’t actually a bunch within the regular sense of the phrase. It is extra of a group which organises throughout websites like Discord, Telegram and boards – therefore the outline “scattered” which was given to them by cyber safety researchers at CrowdStrike.

    They’re identified to be English-speaking and possibly within the UK and the US and younger – in some circumstances youngsters. We all know this from researchers and former arrests. In November the US charged 5 males and boys of their twenties and teenagers for alleged Scattered Spider exercise. One in every of them is 22-year-old Scottish man Tyler Buchanan, who has not made a plea, and the remainder are US primarily based.

    Crackdowns by police appear to have had little impact on the hackers’ dedication, although. On Thursday, Google’s cyber safety division issued warnings that it was beginning to see Scattered Spider-like assaults on US retailers now too.

    As for the hackers I spoke to on Telegram, they declined to reply whether or not or not they have been Scattered Spider. “We cannot reply that query” is all they stated.

    Maybe in a nod to the immaturity and attention-seeking nature of the hackers, two of them stated they wished to be often called “Raymond Reddington” and “Dembe Zuma” after characters from US crime thriller The Blacklist which includes a wished felony serving to police take down different criminals on a blacklist.

    In a message to me, they boasted: “We’re placing UK retailers on the Blacklist.”

    A green promotional banner with black squares and rectangles forming pixels, moving in from the right. The text says: “Tech Decoded: The world’s biggest tech news in your inbox every Monday.”



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticlePope Leo defends traditional marriage, dignity of unborn and immigrants in private address
    Next Article See airline passengers throw away masks as mandate is revoked
    morshedi
    • Website

    Related Posts

    Latest News

    More Extreme Trump: UCLA’s Clausing on Policy Proposal

    May 18, 2025
    Latest News

    Moscow makes first retaliation attack after Ukraine’s strikes in Russia with U.S. missiles

    May 18, 2025
    Latest News

    Argentina celebrates World Cup victory – BBC News

    May 18, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Commentary: Does Volvo’s Chinese ownership threaten US national security?

    February 1, 202520 Views

    FHRAI raises red flag over Agoda’s commission practices and GST compliance issues, ET TravelWorld

    April 19, 202514 Views

    Mystery of body in wetsuit found in reservoir puzzles police

    February 22, 202514 Views

    Skype announces it will close in May

    February 28, 202511 Views

    WarThunder – I Joined The Swedish AirForce

    March 17, 20257 Views
    Categories
    • Art
    • Article
    • Author
    • Books
    • Celebrity
    • Countries
    • Did you know
    • Entertainment News
    • Fashion
    • Food
    • Funny
    • Gaming
    • Health
    • Herbs
    • History
    • IT
    • Latest News
    • Mixed
    • Mystery
    • Opinions
    • Poets & philosopher
    • Politics
    • Research & Science
    • Shopping
    • space
    • Spiritual
    • Sports
    • Stories
    • Strange News
    • Technology
    • Travel
    • Trending News
    • United Nation
    • University
    • war
    • World Economy
    • World Leaders
    • World News
    • Youtube
    Most Popular

    Commentary: Does Volvo’s Chinese ownership threaten US national security?

    February 1, 202520 Views

    FHRAI raises red flag over Agoda’s commission practices and GST compliance issues, ET TravelWorld

    April 19, 202514 Views

    Mystery of body in wetsuit found in reservoir puzzles police

    February 22, 202514 Views
    Our Picks

    UK needs more nuclear to power AI, says Amazon Web Services boss

    May 18, 2025

    One dead after Mexican navy training ship hits New York’s Brooklyn Bridge – as mayor says at least 19 injured | US News

    May 18, 2025

    HE CONFESSES LOVE TO MY BEST FRIEND!! (CUTE)

    May 18, 2025
    Categories
    • Art
    • Article
    • Author
    • Books
    • Celebrity
    • Countries
    • Did you know
    • Entertainment News
    • Fashion
    • Food
    • Funny
    • Gaming
    • Health
    • Herbs
    • History
    • IT
    • Latest News
    • Mixed
    • Mystery
    • Opinions
    • Poets & philosopher
    • Politics
    • Research & Science
    • Shopping
    • space
    • Spiritual
    • Sports
    • Stories
    • Strange News
    • Technology
    • Travel
    • Trending News
    • United Nation
    • University
    • war
    • World Economy
    • World Leaders
    • World News
    • Youtube
    Facebook X (Twitter) YouTube LinkedIn
    • Privacy Policy
    • Disclaimer
    • Terms & Conditions
    • About us
    • Contact us
    Copyright © 2024 morshedi.se All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.

    Please wait...

    Subscribe to our newsletter

    Want to be notified when our article is published? Enter your email address and name below to be the first to know.
    I agree to Terms of Service and Privacy Policy
    SIGN UP FOR NEWSLETTER NOW