Summary: The Hunters International Ransomware-as-a-Service operation is transitioning to an extortion-only model named βWorld Leaksβ due to declining profitability and increased scrutiny. Launched as of January 1, 2025, this new operation utilizes a self-developed exfiltration tool to automate data theft. Despite its rebranding, the group remains heavily involved in cybercrime, previously claiming over 280 attacks against various organizations.
Affected: Hunters International, World Leaks
Keypoints :
- The Hunters International RaaS operation shut down on November 17, 2024, and rebranded as World Leaks.
- The new model focuses solely on extortion, using a custom-built exfiltration tool for data theft.
- Hunters International had targeted a variety of platforms and claimed over 280 attacks, including breaches of significant organizations like Tata Technologies and the Fred Hutch Cancer Center.