• About
  • Disclaimer
  • Privacy Policy
  • Contact
Thursday, July 17, 2025
Cyber Defense GO
  • Login
  • Home
  • Cyber Security
  • Artificial Intelligence
  • Machine Learning
  • Data Analysis
  • Computer Networking
  • Disaster Restoration
No Result
View All Result
  • Home
  • Cyber Security
  • Artificial Intelligence
  • Machine Learning
  • Data Analysis
  • Computer Networking
  • Disaster Restoration
No Result
View All Result
Cyber Defense Go
No Result
View All Result
Home Cyber Security

Taking the shine off BreachForums – Sophos Information

Md Sazzad Hossain by Md Sazzad Hossain
0
Taking the shine off BreachForums – Sophos Information
585
SHARES
3.2k
VIEWS
Share on FacebookShare on Twitter


On June 25, 2025, French authorities introduced that 4 members of the ShinyHunters (also referred to as ShinyCorp) cybercriminal group had been arrested in a number of French areas for cybercrime actions and involvement within the English-language underground discussion board often called BreachForums. The coordinated world legislation enforcement effort concentrating on the ‘ShinyHunters’, ‘Hole’, ‘Noct’, and ‘Depressed’ personas adopted the February arrest of Kai West (also referred to as ‘IntelBroker’), who beforehand administered BreachForums.

The ShinyHunters menace group has been energetic since 2020 and has compromised organizations in industries comparable to telecommunications, e-commerce, know-how, and retail. The group is understood for promoting stolen knowledge completely on RaidForums and BreachForums. The ShinyHunters persona was a key participant in these boards as a contributor and administrator.

Since its unique creation as RaidForums in 2015, BreachForums had been taken down quite a few occasions and had been administered by a number of personas. Desk 1 lists a timeline of notable occasions within the discussion board’s historical past.

Date Occasion Element
March 19, 2015 RaidForums launch Diogo Santos Coelho (also referred to as ‘All-powerful’) based
RaidForums. It grew to become one of many largest knowledge leak boards, peaking
at over 530,000 customers.
January 31, 2022 Arrest Coelho was arrested within the UK on the request of U.S. authorities.
February 25, 2022 Discussion board offline RaidForums grew to become inaccessible, and a suspected
credential-harvesting clone appeared.
March 4, 2022 BreachForums (v1)
launch
Conor Fitzpatrick (also referred to as ‘Pompompurin’) launched
BreachForums as a successor to RaidForums.
April 12, 2022 Area seizures U.S. authorities introduced the seizure of RaidForums domains as
a part of Operation TOURNIQUET.
March 15, 2023 Arrest Fitzpatrick was arrested in Peekskill, New York.
March 21, 2023 Discussion board offline An administrator often called ‘Baphomet’ shut down the discussion board, citing
considerations about legislation enforcement actions.
June 12, 2023 BreachForums (v2)
launch
The ShinyHunters persona and Baphomet relaunched BreachForums (breachforums . vc).
June 18, 2023 Discussion board compromise BreachForums was compromised by ‘OnniForums’, and knowledge of
roughly 4,000 members was leaked.
Might 15, 2024 Area seizures U.S. authorities seized a number of BreachForums domains.
Might 29, 2024 BreachForums (v3)
launch
BreachForums resurfaced (breachforums . st). Customers suspected that
it was a honeypot, nevertheless it was ultimately deemed professional.
June 14, 2024 Management change ShinyHunters retired, and ‘Anastasia’ assumed possession.
August 1, 2024 Management change IntelBroker assumed management.
January 1, 2025 Management change IntelBroker resigned as proprietor, and Anastasia continued because the discussion board administrator.
February 2025 Arrest Worldwide legislation enforcement arrested Kai West (IntelBroker) in
France.
April 28, 2025 Discussion board offline Regardless of quite a few claims and rumors, it’s unclear if the discussion board
directors, one other menace group, or legislation enforcement was liable for the disappearance.
June 4, 2025 BreachForums (v4)
launch
ShinyHunters relaunched the discussion board (breach-forums . st).
June 9, 2025 Discussion board on the market ShinyHunters introduced the discussion board was on the market.
June 22, 2025 Arrests French authorities arrested members of the ShinyHunters menace
group throughout a coordinated legislation enforcement operation.
June 25, 2025 Federal expenses U.S. authorities unsealed an indictment charging Kai West
(IntelBroker) with a number of cybercrimes.

Desk 1: Timeline of main BreachForums occasions.

The ShinyHunters persona partnered with Baphomet to relaunch the second occasion of BreachForums (v2) in June 2023 and later launched the June 2025 occasion (v4) alone. The interim model (v3) abruptly disappeared in April 2025, and the trigger is unclear. ‘Darkish Storm Crew’ claimed that it took the discussion board down by way of a distributed denial of service (DDoS) assault (see Determine 1). Different personas reported that the Qilin ransomware operators brought about the outage in retaliation for his or her ban from BreachForums. Rumors additionally circulated that legislation enforcement was accountable.

Screenshot of Dark Storm Team post claiming responsibility for the BreachForums takedown

Determine 1: Darkish Storm claiming accountability for the BreachForums takedown. (Supply: X)

On June 4, Counter Menace Unit™ (CTU) researchers recognized the relaunch of BreachForums (v4) underneath the administration of the ShinyHunters persona. One of many first posts was purportedly by IntelBroker, a distinguished BreachForums contributor who took management of BreachForums (v3) in 2024. The persona maintained a fame for promoting entry to database dumps and compromised programs and was linked to cybercrime teams CNZ (redacted) and GOLD PUMPKIN (also referred to as HELLCAT). In January 2025, they stepped down as BreachForums’ proprietor (see Determine 2), and rumors of their arrest circulated. These rumors had been confirmed on June 25, when the U.S. Division of Justice (DOJ) introduced the unsealing of an indictment in opposition to Kai West, who operated underneath the IntelBroker alias. West was arrested in February, so the June BreachForums put up was submitted by somebody impersonating the persona.

Screenshot of IntelBroker post resigning as BreachForums owner

Determine 2: IntelBroker asserting resignation as BreachForums proprietor. (Supply: X)

The BreachForums (v4) relaunch was short-lived. On June 9, the bulletin board displayed a discover that it was closed and that the discussion board was on the market for $2,500 USD (see Determine 3). The message explicitly warned scammers to “keep away”. The ShinyHunters members had been arrested two weeks later.

Screenshot of ShinyHunters advertising BreachForums for sale

Determine 3: ShinyHunters promoting BreachForums on the market. (Supply: BreachForums)

As of this publication, BreachForums stays offline. The discussion board’s future is unclear, however the sample of relaunches might proceed.

These arrests replicate growing legislation enforcement strain on cybercriminal infrastructure and operations. Within the U.S. Division of Justice announcement concerning the arrest and indictment of Kai West, FBI Assistant Director in Cost Christopher G. Raia said that the arrests “ought to function a warning to anybody considering they’ll conceal behind a keyboard and commit cybercrime with impunity; the FBI will discover and maintain you accountable regardless of the place you’re.” CTU™ researchers proceed to watch legislation enforcement actions and their affect on the cybercrime panorama.

You might also like

Why Your Wi-Fi Works however Your Web Doesn’t (and How you can Repair It)

How Fidelis Integrates Detection and Response for SQL-Based mostly Exploits

How India’s DPDP Act Impacts Digital Lending


On June 25, 2025, French authorities introduced that 4 members of the ShinyHunters (also referred to as ShinyCorp) cybercriminal group had been arrested in a number of French areas for cybercrime actions and involvement within the English-language underground discussion board often called BreachForums. The coordinated world legislation enforcement effort concentrating on the ‘ShinyHunters’, ‘Hole’, ‘Noct’, and ‘Depressed’ personas adopted the February arrest of Kai West (also referred to as ‘IntelBroker’), who beforehand administered BreachForums.

The ShinyHunters menace group has been energetic since 2020 and has compromised organizations in industries comparable to telecommunications, e-commerce, know-how, and retail. The group is understood for promoting stolen knowledge completely on RaidForums and BreachForums. The ShinyHunters persona was a key participant in these boards as a contributor and administrator.

Since its unique creation as RaidForums in 2015, BreachForums had been taken down quite a few occasions and had been administered by a number of personas. Desk 1 lists a timeline of notable occasions within the discussion board’s historical past.

Date Occasion Element
March 19, 2015 RaidForums launch Diogo Santos Coelho (also referred to as ‘All-powerful’) based
RaidForums. It grew to become one of many largest knowledge leak boards, peaking
at over 530,000 customers.
January 31, 2022 Arrest Coelho was arrested within the UK on the request of U.S. authorities.
February 25, 2022 Discussion board offline RaidForums grew to become inaccessible, and a suspected
credential-harvesting clone appeared.
March 4, 2022 BreachForums (v1)
launch
Conor Fitzpatrick (also referred to as ‘Pompompurin’) launched
BreachForums as a successor to RaidForums.
April 12, 2022 Area seizures U.S. authorities introduced the seizure of RaidForums domains as
a part of Operation TOURNIQUET.
March 15, 2023 Arrest Fitzpatrick was arrested in Peekskill, New York.
March 21, 2023 Discussion board offline An administrator often called ‘Baphomet’ shut down the discussion board, citing
considerations about legislation enforcement actions.
June 12, 2023 BreachForums (v2)
launch
The ShinyHunters persona and Baphomet relaunched BreachForums (breachforums . vc).
June 18, 2023 Discussion board compromise BreachForums was compromised by ‘OnniForums’, and knowledge of
roughly 4,000 members was leaked.
Might 15, 2024 Area seizures U.S. authorities seized a number of BreachForums domains.
Might 29, 2024 BreachForums (v3)
launch
BreachForums resurfaced (breachforums . st). Customers suspected that
it was a honeypot, nevertheless it was ultimately deemed professional.
June 14, 2024 Management change ShinyHunters retired, and ‘Anastasia’ assumed possession.
August 1, 2024 Management change IntelBroker assumed management.
January 1, 2025 Management change IntelBroker resigned as proprietor, and Anastasia continued because the discussion board administrator.
February 2025 Arrest Worldwide legislation enforcement arrested Kai West (IntelBroker) in
France.
April 28, 2025 Discussion board offline Regardless of quite a few claims and rumors, it’s unclear if the discussion board
directors, one other menace group, or legislation enforcement was liable for the disappearance.
June 4, 2025 BreachForums (v4)
launch
ShinyHunters relaunched the discussion board (breach-forums . st).
June 9, 2025 Discussion board on the market ShinyHunters introduced the discussion board was on the market.
June 22, 2025 Arrests French authorities arrested members of the ShinyHunters menace
group throughout a coordinated legislation enforcement operation.
June 25, 2025 Federal expenses U.S. authorities unsealed an indictment charging Kai West
(IntelBroker) with a number of cybercrimes.

Desk 1: Timeline of main BreachForums occasions.

The ShinyHunters persona partnered with Baphomet to relaunch the second occasion of BreachForums (v2) in June 2023 and later launched the June 2025 occasion (v4) alone. The interim model (v3) abruptly disappeared in April 2025, and the trigger is unclear. ‘Darkish Storm Crew’ claimed that it took the discussion board down by way of a distributed denial of service (DDoS) assault (see Determine 1). Different personas reported that the Qilin ransomware operators brought about the outage in retaliation for his or her ban from BreachForums. Rumors additionally circulated that legislation enforcement was accountable.

Screenshot of Dark Storm Team post claiming responsibility for the BreachForums takedown

Determine 1: Darkish Storm claiming accountability for the BreachForums takedown. (Supply: X)

On June 4, Counter Menace Unit™ (CTU) researchers recognized the relaunch of BreachForums (v4) underneath the administration of the ShinyHunters persona. One of many first posts was purportedly by IntelBroker, a distinguished BreachForums contributor who took management of BreachForums (v3) in 2024. The persona maintained a fame for promoting entry to database dumps and compromised programs and was linked to cybercrime teams CNZ (redacted) and GOLD PUMPKIN (also referred to as HELLCAT). In January 2025, they stepped down as BreachForums’ proprietor (see Determine 2), and rumors of their arrest circulated. These rumors had been confirmed on June 25, when the U.S. Division of Justice (DOJ) introduced the unsealing of an indictment in opposition to Kai West, who operated underneath the IntelBroker alias. West was arrested in February, so the June BreachForums put up was submitted by somebody impersonating the persona.

Screenshot of IntelBroker post resigning as BreachForums owner

Determine 2: IntelBroker asserting resignation as BreachForums proprietor. (Supply: X)

The BreachForums (v4) relaunch was short-lived. On June 9, the bulletin board displayed a discover that it was closed and that the discussion board was on the market for $2,500 USD (see Determine 3). The message explicitly warned scammers to “keep away”. The ShinyHunters members had been arrested two weeks later.

Screenshot of ShinyHunters advertising BreachForums for sale

Determine 3: ShinyHunters promoting BreachForums on the market. (Supply: BreachForums)

As of this publication, BreachForums stays offline. The discussion board’s future is unclear, however the sample of relaunches might proceed.

These arrests replicate growing legislation enforcement strain on cybercriminal infrastructure and operations. Within the U.S. Division of Justice announcement concerning the arrest and indictment of Kai West, FBI Assistant Director in Cost Christopher G. Raia said that the arrests “ought to function a warning to anybody considering they’ll conceal behind a keyboard and commit cybercrime with impunity; the FBI will discover and maintain you accountable regardless of the place you’re.” CTU™ researchers proceed to watch legislation enforcement actions and their affect on the cybercrime panorama.

Tags: BreachforumsNewsshineSophos
Previous Post

SwiNOG 40: A Day of Awesomeness

Next Post

MIT and Mass Common Brigham launch joint seed program to speed up improvements in well being | MIT Information

Md Sazzad Hossain

Md Sazzad Hossain

Related Posts

The Carruth Knowledge Breach: What Oregon Faculty Staff Must Know
Cyber Security

Why Your Wi-Fi Works however Your Web Doesn’t (and How you can Repair It)

by Md Sazzad Hossain
July 17, 2025
How Fidelis Integrates Detection and Response for SQL-Based mostly Exploits
Cyber Security

How Fidelis Integrates Detection and Response for SQL-Based mostly Exploits

by Md Sazzad Hossain
July 16, 2025
How India’s DPDP Act Impacts Digital Lending
Cyber Security

How India’s DPDP Act Impacts Digital Lending

by Md Sazzad Hossain
July 16, 2025
MITRE Launches New Framework to Sort out Crypto Dangers
Cyber Security

MITRE Launches New Framework to Sort out Crypto Dangers

by Md Sazzad Hossain
July 15, 2025
Anomaly detection betrayed us, so we gave it a brand new job – Sophos Information
Cyber Security

Anomaly detection betrayed us, so we gave it a brand new job – Sophos Information

by Md Sazzad Hossain
July 15, 2025
Next Post
MIT and Mass Common Brigham launch joint seed program to speed up improvements in well being | MIT Information

MIT and Mass Common Brigham launch joint seed program to speed up improvements in well being | MIT Information

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

Guide API Testing with Postman – A Newbie-Pleasant Information

Guide API Testing with Postman – A Newbie-Pleasant Information

April 8, 2025
Sale of BT’s Irish Enterprise Unit Underlines Finish of twentieth Century Telco International Domination Aspirations – IT Connection

Sale of BT’s Irish Enterprise Unit Underlines Finish of twentieth Century Telco International Domination Aspirations – IT Connection

February 8, 2025

Categories

  • Artificial Intelligence
  • Computer Networking
  • Cyber Security
  • Data Analysis
  • Disaster Restoration
  • Machine Learning

CyberDefenseGo

Welcome to CyberDefenseGo. We are a passionate team of technology enthusiasts, cybersecurity experts, and AI innovators dedicated to delivering high-quality, insightful content that helps individuals and organizations stay ahead of the ever-evolving digital landscape.

Recent

Selecting the Proper Catastrophe Restoration Firm in Melrose Park

Selecting the Proper Catastrophe Restoration Firm in Melrose Park

July 17, 2025
Finest Ethernet Switches for Enterprise (2025): Choice Information and High Picks

Finest Ethernet Switches for Enterprise (2025): Choice Information and High Picks

July 17, 2025

Search

No Result
View All Result

© 2025 CyberDefenseGo - All Rights Reserved

No Result
View All Result
  • Home
  • Cyber Security
  • Artificial Intelligence
  • Machine Learning
  • Data Analysis
  • Computer Networking
  • Disaster Restoration

© 2025 CyberDefenseGo - All Rights Reserved

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In