Hunters International Closure & Free Decryptors
- Hunters international,a cybercrime group known for ransomware attacks,announced it is indeed shutting down operations,citing "recent developments." The group did not elaborate on the reasons behind the decision.
- In April, Hunters International leadership suggested a change of direction, stating that ransomware was becoming "unpromising, low-converting, and extremely risky." They also noted the increasing recognition of cybercrime...
- "This status is unacceptable for most countries, as it has a negative impact on the external banking system," the group stated in April."This means that the fight against...
Hunters International, a ransomware group, is shutting down operations, a meaningful development in the cybercrime landscape. They are offering free decryptors to past victims, a rare move that could provide crucial data recovery. The group cited various reasons, including the increasing risks associated with ransomware and the growing recognition of cybercrime as terrorism. Experts believe the individuals behind Hunters international may rebrand and continue their cybercrime activities. This evolving situation, detailed by News Directory 3, includes mentions of potential rebrands and future attacks. explore the details of Hunters International’s closure and the implications for ransomware victims and the broader cybercrime world. Discover what’s next in this ever-changing sphere.
Hunters International Ransomware Group Ceases Operations
Hunters international,a cybercrime group known for ransomware attacks,announced it is indeed shutting down operations,citing “recent developments.” The group did not elaborate on the reasons behind the decision.
In April, Hunters International leadership suggested a change of direction, stating that ransomware was becoming “unpromising, low-converting, and extremely risky.” They also noted the increasing recognition of cybercrime as terrorism, with potential consequences for countries that fail to combat it.
“This status is unacceptable for most countries, as it has a negative impact on the external banking system,” the group stated in April.”This means that the fight against ransomware is moving from the virtual to the real plane, and this time our own states are against us. The chances of survival, in such a situation, tend to be zero.”
As a “gesture of goodwill,” Hunters International said it woudl release decryptors to past victims upon request. The group urged victims to visit its official website for decryption tools and recovery guidance.
While departing cybercrime groups rarely offer free decryption keys, it has happened before. Avaddon, for example, released decryption keys when it shut down in 2021. Researchers say that crew has since rebranded as NoEscape.
Despite the declaration,experts suspect the individuals behind Hunters International will continue to engage in cybercrime under a different name. Group-IB researchers predicted in April that the team would rebrand as World Leaks, an extortion-only operation that steals data and demands ransom without encrypting files.
World Leaks’ dark web page, similar in style to Hunters International’s, currently lists 31 victims. In May, World Leaks invited journalists to subscribe to an early warning mailing list for details on attacks 24 hours before public release.
Hunters International gained notoriety for attacks on organizations such as Tata Technologies and ICBC’s London office. The group also drew criticism for leaking patients’ pre-operative body images from a U.S. plastic surgery clinic shortly after its formation in 2023.
