Ransomware crew Hunters International shuts down, hands out keys to victims


Ransomware gang Hunters International has shut up shop and offered decryption keys to all victims as a parting favor. Announcing the news on Thursday morning, the gang deleted all victim data from its dark web leak site and issued a statement confirming its closure.

“We, at Hunters International, wish to inform you of a significant decision regarding our operations,” it said. “After careful consideration and in light of recent developments, we have decided to close the Hunters International project. This decision was not made lightly, and we recognize the impact it has on the organizations we have interacted with.”

Read more…
Source: MSN News


Sign up for the Cyber Security Review Newsletter
The latest news and insights delivered right to your inbox.


Related:

  • Novel Technique to Detect Cloud Threat Actor Operations

    February 6, 2026

    Cloud-based alerting systems often struggle to distinguish between normal cloud activity and targeted malicious operations by known threat actors. The difficulty doesn’t lie in an inability to identify complex alerting operations across thousands of cloud resources or in a failure to follow identity resources, the problem lies in the accurate detection of known persistent threat actor ...

  • Photo-Sharing Platform Flickr Issues Data Breach Warning

    February 6, 2026

    It’s not been the greatest start to February as far as data breaches are concerned. Substack has confirmed it has been hacked, and now Flickr has issued a warning to users concerning a data breach vulnerability that might have leaked their personal data. Although it’s unknown how many users may have been affected at this stage, ...

  • Dynowiper: Destructive Malware Targeting Poland’s Energy Sector

    February 6, 2026

    The coordinated destructive campaign against critical energy infrastructure occurred on December 29, 2025, during a period of severe winter weather in Poland. According to CERT Polska’s report, the campaign targeted: 30+ wind and solar farms across Poland; A major CHP plant supplying heat to nearly half a million customers; A manufacturing sector company characterized as an ...

  • Pakistan, China to boost liaison in intelligence sharing, cybercrime prevention

    February 6, 2026

    Pakistan and China on Thursday agreed to enhance cooperation in intelligence sharing and cybercrime prevention. The understanding was reached during a meeting between Federal Interior Minister Mohsin Naqvi and Chinese Ambassador in Pakistan Jiang Zaidong. Upon his arrival at the Ministry of Interior, the Federal Interior Minister welcomed the Chinese Ambassador. During the meeting, detailed discussions ...

  • Stan Ghouls targeting Russia and Uzbekistan with NetSupport RAT

    February 5, 2026

    Stan Ghouls (also known as Bloody Wolf) is an cybercriminal group that has been launching targeted attacks against organizations in Russia, Kyrgyzstan, Kazakhstan, and Uzbekistan since at least 2023. These attackers primarily have their sights set on the manufacturing, finance, and IT sectors. Their campaigns are meticulously prepared and tailored to specific victims, featuring a signature ...

  • Substack confirms data breach affects users’ email addresses and phone numbers

    February 5, 2026

    Newsletter platform Substack has confirmed a data breach in an email to users. The company said that in October, an “unauthorized third party” accessed user data, including email addresses, phone numbers, and other unspecified “internal metadata.” Substack specified that more sensitive data, such as credit card numbers, passwords, and other financial information, was unaffected. In an ...