Sept. 27, 2023, 11:48 a.m. | BrianKrebs

Krebs on Security krebsonsecurity.com

The victim shaming site operated by the Snatch ransomware group is leaking data about its true online location and internal operations, as well as the Internet addresses of its visitors, KrebsOnSecurity has found. The leaked data suggest that Snatch is one of several ransomware groups using paid ads on Google.com to trick people into installing malware disguised as popular free software, such as Microsoft Teams, Adobe Reader, Mozilla Thunderbird, and Discord.

8base ransomware addresses ads breadcrumbs data data breaches domaintools.com found google @htmalgae internal internet ip addresses leaked location malwarebytes microsoft teams ne'er-do-well news operations paid people ransom ransomware ransomware group ransomware groups rilide shaming snatch snatch ransomware trustwave spiderlabs victim

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)