Hunters International shifts from ransomware to pure data extortion

Hunters International shifts from ransomware to pure data extortion
Summary: The Hunters International Ransomware-as-a-Service operation is transitioning to an extortion-only model named β€œWorld Leaks” due to declining profitability and increased scrutiny. Launched as of January 1, 2025, this new operation utilizes a self-developed exfiltration tool to automate data theft. Despite its rebranding, the group remains heavily involved in cybercrime, previously claiming over 280 attacks against various organizations.

Affected: Hunters International, World Leaks

Keypoints :

  • The Hunters International RaaS operation shut down on November 17, 2024, and rebranded as World Leaks.
  • The new model focuses solely on extortion, using a custom-built exfiltration tool for data theft.
  • Hunters International had targeted a variety of platforms and claimed over 280 attacks, including breaches of significant organizations like Tata Technologies and the Fred Hutch Cancer Center.

Source: https://www.bleepingcomputer.com/news/security/hunters-international-rebrands-as-world-leaks-in-shift-to-data-extortion/