Close Menu
    Facebook X (Twitter) Instagram
    Trending
    • Real-Time Speech from Brain Signals Achieved
    • Social Security, Medicare To Run Out Of Money Earlier Than Expected
    • Sami Sheen Exposes Sister Lola In Explosive Pride Month Feud
    • Israel minister says Iran leader Khamenei ‘can no longer be allowed to exist’ after hospital hit
    • Real Madrid star Mbappe hospitalised at FIFA Club World Cup | Football News
    • Stars sign former first-round pick to four-year extension
    • Letters to the Editor: More needs to be done to keep ICE agents accountable to the law
    • Promises Kept: Trump Creates Largest Blue-Collar Wage Growth in 60 Years | The Gateway Pundit
    News Study
    Thursday, June 19
    • Home
    • World News
    • Latest News
    • Sports
    • Politics
    • Tech News
    • World Economy
    • More
      • Trending News
      • Entertainment News
      • Travel
    News Study
    Home»Tech News

    BBC reporter on talking to the hackers

    Team_NewsStudyBy Team_NewsStudyMay 18, 2025 Tech News No Comments7 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Joe Tidy

    Cyber correspondent

    BBC A man with brown hair and wearing a light blue shirt looks in contemplation.BBC

    Joe Tidy interacted with hackers who claimed to have achieved the M&S and Co-op hack

    Nearly each day, my cellphone pings with messages from hackers of all stripes.

    The nice, the dangerous, the not-so-sure.

    I have been reporting on cyber safety for greater than a decade, so I do know that lots of them like to speak about their hacks, findings and escapades.

    About 99% of those conversations keep firmly locked in my chat logs and do not result in information tales. However a current ping was unattainable to disregard.

    “Hey. That is Joe Tidy from the BBC reporting on this Co-op information, appropriate?” the hackers messaged me on Telegram.

    “We now have some information for you,” they teased.

    Once I cautiously requested what this was, the individuals behind the Telegram account – which had no identify or profile image – gave me the within monitor on what they claimed to have achieved to M&S and the Co-op, in cyber assaults that brought about mass disruption.

    By messages back-and-forth over the subsequent 5 hours, it grew to become clear to me that these obvious hackers had been fluent English audio system and though they claimed be messengers, it was apparent they had been intently linked to – if not intimately concerned in – the M&S and Co-op hacks.

    They shared proof proving that that they had stolen an enormous quantity of personal buyer and worker info.

    I checked out a pattern of the info that they had given me – after which securely deleted it.

    A shop fridge with almost empty shelves, and a sign stuck on the window which says "Sorry we are having some availability issues which will be resolved shortly"

    Consumers have been met with empty cabinets at some UK Co-op shops in current weeks

    Messages that confirmed suspicions

    They had been clearly pissed off that Co-op wasn’t giving in to their ransom calls for however would not say how a lot cash in Bitcoin they had been demanding of the retailer in alternate for the promise that they would not promote or give away the stolen knowledge.

    After a dialog with the BBC’s Editorial Coverage group, we determined that it was within the public curiosity to report that that they had supplied us with proof proving that they had been chargeable for the hack.

    I rapidly contacted the press group on the Co-op for remark, and inside minutes the agency, who had initially downplayed the hack, admitted to staff, clients and the inventory market concerning the vital knowledge breach.

    A lot later, the hackers despatched me a protracted indignant and offensive letter about Co-op’s response to their hack and subsequent extortion, which revealed that the retailer narrowly dodged a extra extreme hack by intervening within the chaotic minutes after its pc systems were infiltrated. The letter and dialog with the hackers confirmed what consultants within the cyber safety world had been saying since this wave of assaults on retailers started – the hackers had been from a cyber crime service referred to as DragonForce.

    Who’re DragonForce, you is perhaps asking? Based mostly on our conversations with the hackers and wider data, now we have some clues.

    DragonForce presents cyber felony associates varied providers on their darknet web site in alternate for a 20% reduce of any ransoms collected. Anybody can enroll and use their malicious software program to scramble a sufferer’s knowledge or use their darknet web site for his or her public extortion.

    This has develop into the norm in organised cyber crime; it is generally known as ransomware-as-a-service.

    Probably the most notorious of current instances has been a service referred to as LockBit, however that is all however defunct now partly as a result of it was cracked by the police final 12 months.

    Following the dismantling of such teams, an influence vacuum has emerged. Cue a tussle for dominance on this underground world, resulting in some rival teams innovating their choices.

    Energy battle ensues

    DragonForce just lately rebranded itself as a cartel providing much more choices to hackers together with 24/7 buyer help, for instance.

    The group had been promoting its wider providing since no less than early 2024 and has been actively focusing on organisations since 2023, based on cyber consultants like Hannah Baumgaertner, Head of Analysis at Silobeaker, a cyber threat safety firm.

    “DragonForce’s newest mannequin consists of options comparable to administration and consumer panels, encryption and ransomware negotiation instruments, and extra,” Ms Baumgaertner stated.

    As a stark illustration of the power-struggle, DragonForce’s darknet web site was just lately hacked and defaced by a rival gang referred to as RansomHub, earlier than re-emerging a couple of week in the past.

    “Behind the scenes of the ransomware ecosystem there appears to be some jostling – that is perhaps for prime ‘chief’ place or simply to disrupt different teams to be able to take extra of the sufferer share,” stated Aiden Sinnott, senior risk researcher from the cyber safety firm Secureworks.

    Who’s pulling the strings?

    DragonForce’s prolific modus operandi is to put up about its victims, because it has achieved 168 instances since December 2024 – a London accountancy agency, an Illinois metal maker, an Egyptian funding agency are all included. But up to now, DragonForce has remained silent concerning the retail assaults.

    Usually radio silence about assaults signifies {that a} sufferer organisation has paid the hackers to maintain quiet. As neither DragonForce, Co-op nor M&S have commented on this level, we do not know what is perhaps taking place behind the scenes.

    Establishing who the individuals are behind DragonForce is hard, and it is not recognized the place they’re positioned. Once I requested their Telegram account about this, I did not get a solution. Though the hackers did not inform me explicitly that they had been behind the current hacks on M&S and Harrods, they confirmed a report in Bloomberg that spelt it out.

    In fact, they’re criminals and might be mendacity.

    Some researchers say DragonForce are based mostly in Malaysia, whereas others say Russia, the place many of those teams are considered positioned. We do know that DragonForce has no particular targets or agenda apart from making a living.

    And if DragonForce is simply the service for different criminals to make use of – who’s pulling the strings and selecting to assault UK retailers?

    Within the early phases of the M&S hack, unknown sources advised cyber information web site Bleeping Pc that proof is pointing to a unfastened collective of cyber criminals generally known as Scattered Spider – however this has but to be confirmed by the police.

    Scattered Spider is just not actually a bunch within the regular sense of the phrase. It is extra of a neighborhood which organises throughout websites like Discord, Telegram and boards – therefore the outline “scattered” which was given to them by cyber safety researchers at CrowdStrike.

    They’re recognized to be English-speaking and possibly within the UK and the US and younger – in some circumstances youngsters. We all know this from researchers and former arrests. In November the US charged 5 males and boys of their twenties and youths for alleged Scattered Spider exercise. One in all them is 22-year-old Scottish man Tyler Buchanan, who has not made a plea, and the remainder are US based mostly.

    Crackdowns by police appear to have had little impact on the hackers’ willpower, although. On Thursday, Google’s cyber safety division issued warnings that it was beginning to see Scattered Spider-like assaults on US retailers now too.

    As for the hackers I spoke to on Telegram, they declined to reply whether or not or not they had been Scattered Spider. “We can’t reply that query” is all they stated.

    Maybe in a nod to the immaturity and attention-seeking nature of the hackers, two of them stated they wished to be generally known as “Raymond Reddington” and “Dembe Zuma” after characters from US crime thriller The Blacklist which entails a wished felony serving to police take down different criminals on a blacklist.

    In a message to me, they boasted: “We’re placing UK retailers on the Blacklist.”

    A green promotional banner with black squares and rectangles forming pixels, moving in from the right. The text says: “Tech Decoded: The world’s biggest tech news in your inbox every Monday.”



    Source link

    Team_NewsStudy
    • Website

    Keep Reading

    Real-Time Speech from Brain Signals Achieved

    Texas Instruments to make ‘historic’ $60bn US chip investment

    Meta offering $100m plus to poach my staff

    Amazon boss says AI will replace jobs at tech giant

    Donald Trump to extend US TikTok ban deadline, White House says

    AI Engineer Overcomes Multiple Hurdles

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Real-Time Speech from Brain Signals Achieved

    June 19, 2025

    Social Security, Medicare To Run Out Of Money Earlier Than Expected

    June 19, 2025

    Sami Sheen Exposes Sister Lola In Explosive Pride Month Feud

    June 19, 2025

    Israel minister says Iran leader Khamenei ‘can no longer be allowed to exist’ after hospital hit

    June 19, 2025

    Real Madrid star Mbappe hospitalised at FIFA Club World Cup | Football News

    June 19, 2025
    Categories
    • Entertainment News
    • Latest News
    • Politics
    • Sports
    • Tech News
    • Travel
    • Trending News
    • World Economy
    • World News
    About us

    Welcome to NewsStudy.xyz – your go-to source for comprehensive and up-to-date news coverage from around the globe. Our mission is to provide our readers with insightful, reliable, and engaging content on a wide range of topics, ensuring you stay informed about the world around you.

    Stay updated with the latest happenings from every corner of the globe. From international politics to global crises, we bring you in-depth analysis and factual reporting.

    At NewsStudy.xyz, we are committed to delivering high-quality content that matters to you. Our team of dedicated writers and journalists work tirelessly to ensure that you receive the most accurate and engaging news coverage. Join us in our journey to stay informed, inspired, and connected.

    Editors Picks

    Brett Favre reveals troubling news about his health

    September 24, 2024

    UN chief raises alarm over Sudan ‘escalation’ to army leader

    September 26, 2024

    Report: Rules set for new pickup style NBA All-Star tournament

    November 23, 2024

    Brazil’s Lula released from hospital after brain bleed surgery | Politics News

    December 15, 2024
    Categories
    • Entertainment News
    • Latest News
    • Politics
    • Sports
    • Tech News
    • Travel
    • Trending News
    • World Economy
    • World News
    • Privacy Policy
    • Disclaimer
    • Terms & Conditions
    • About us
    • Contact us
    Copyright © 2024 Newsstudy.xyz All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.