Live data from Hacker News

DarkSide ransomware gang quits after servers, Bitcoin stash seized

krebsonsecurity.com

41–50 of 623 posts

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#41
post #15

Can crypto actually be non-traceable? I remember currencies like Monero or ZCash advertising privacy from the last crypto craze. I mean if you have 100M in some account, can you actually run it trough "private" currencies to remove traces? BTC, ETH etc. all seems super traceable, even more so than in regular banking. Also how are criminals getting their money out with no one noticing, does Panama/Malta etc. have Krak…

it can be harder to trace, but the bigger problem is trying to turn it into cash, which is hard to do anonymously regardless of the currency used (BTc, XMR, etc). THe FBI,Secret Service, are mostly focused on the conversion of crypto to cash, not the intermediary steps.

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#42

Earlier quoted context omitted.

I think it's still just pseudo-anonymity, even for monero. Which means, practically, that I don't think it would have done more for these guys than just delay the seizure.

Nope. Monero is actually private and untraceable.

Until someone cracks it, that is. If it becomes the crypto of choice for some of the bigger fish, you can bet the government will find a way to trace it.

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#43
> The REvil representative said its program was introducing new restrictions on the kinds of organizations that affiliates could hold for ransom, and that henceforth it would be forbidden to attack those in the “social sector” (defined as healthcare and educational institutions) and organizations in the “gov-sector” (state) of any country. Affiliates also will be required to get approval before infecting victims.

Statements like this seem to point to ransomware activities being far more coordinated and "business-like" than they often get credit for.

I do wonder if ransomware is (in a strange way) a(n illegal) free-market response to what is perceived to be an under-valuation of tech skills - aggrieved people who can carry out attacks and gain access to deploy ransomware are likely to be able to earn more through this route, even factoring in their "risk of being caught".

If a market correction occurs (ransomware becomes a real fear, organisations rapidly start to value security skills more and pay "megabucks" for the skills and hire them at-scale), the risk/reward of being caught starts to mean access brokers reduce in number, and the compensation reaches a free market equilibrium (accounting for the "getting caught" risk of criminal activity).

A lot of the time I still see people trying to hire entry-level people into live/ operational security roles, without the experience they'd need. I wonder if this is partly due to a desire to cut costs, rather than accept the need to pay rock-star compensation?

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#44

Earlier quoted context omitted.

That shouldn't be a much of a surprise; the US has always aligned itself with protecting it's oil supply.

Crude insult. Akin to criticizing someone for "aligning with protecting his oxygen supply".

Cage match. Me with no gas vs. you with no oxygen

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#45
It was a mistake to attack the business side of the oil company, because it created what could be sold as reasonable doubt to shut down the pipeline.

As a result, the ransom had the optics of an attack on infrastructure. As evidenced by the coverage of Americans desperately filling up containers.

This created the impetus for the US to treat this as an incident far and above the ambient ransomware activities leading up to this.

It also gave the US an opportunity to show how effective it could be when it had the political cover to do so.

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#46
post #7

why are ransomware groups transacting in BTC, which can be easily traced?

Just curious, what alternatives are there, and how would they work?

Check out Monero. I'm a lay person when it comes to cryptography and cryptocurrency, but supposedly an innovation in that currency, known as ring signatures, keeps the blockchain private.

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#47

Earlier quoted context omitted.

That shouldn't be a much of a surprise; the US has always aligned itself with protecting it's oil supply.

Crude insult. Akin to criticizing someone for "aligning with protecting his oxygen supply".

I believe you mean a Light Sweet Crude insult.

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#48
Lots of opining about motives and reasoning for the shutdown, but this seems like the most likely scenario:

>“However, a strong caveat should be applied to these developments: it’s likely that these ransomware operators are trying to retreat from the spotlight more than suddenly discovering the error of their ways”

Re: DarkSide ransomware gang quits after servers, Bitcoin stash seized

#49

If this is the US taking action, they should go after distributed denial of secrets next ( https://en.m.wikipedia.org/wiki/Distributed_Denial_of_Secret... ). This group is doxxing people for their donations, which isn’t “hacktivism” - it’s just a criminal breach of privacy. Crime doesn’t become a non-crime just because it is left-biased. Enough with the unchecked rise of cyber crimes.

So they have a public representative living in the US and are associated with Harvard University. I don‘t think there‘s much shadowy cybercrime to investigate there.

How do you feel about Wikileaks and the prosecution of Julian Assange?

Post reply on HN