Breaking

Russian Chinese hackers and ransomware operators working together

Security researchers have identified some unusual activities in Russian cybercrime forums, where Russians and Chinese hackers seem to be collaborating recently. This behavior was first observed in RAMP hacking forum, when Mandarin speaking actors started sharing tips, tricks and making conversations on attacks.

Russian Chinese hackers get-together

Based on a report from Flashpoint, RAMP members are now communicating in the forums using machine translated Mandarin and there is sudden spike of 30 new members from China in the forum community.

Researchers predict that Russian ransomware operators are establishing a collaboration with Chinese hackers to prepare some attacks against U.S entities, exchange exploits, malware or to hire talents. A user that goes by the name Kajit is the one who seems to have initiated this activity and the user also seems to be the admin of the RAMP forum. It is be noted that this unusual Russian Chinese hackers combo was also seen in XSS hacking forum.

Russian and Chinese Actors Collaborating

Recntly, one of the RAMP admin called as ‘boriselcin’ posted a topic calling on threat actors actors to attack the USA. Though these behaviors are a warning for the security professionals, it is also to be noted that most of the RAMP activities are a smokescreen and should be viewed with some skepticism.

“This ad is in Russian, because we only work with Russian speakers. BUT, out of respect for the admin, we will make an exception for Sino-speaking users and even translate this message in Chinese (you can even duplicate it in Mandarin and Canotonese!)”- Conti ransomware operation.

RAMP is evolving

RAMP was established by a Babuk ransomware operator and since then this platform has been used to post stolen credentials and data from other cyberattacks performed, including vulnerabilities and payloads. One such data was exposed in September on Fortinet VPN with access to 12,856 devices and around 498K credentials.

Since its a holiday season in US, the security teams and professionals should be on high alert to stop something that is cooking in the RAMP and XSS forum. The recent Emotet Malware rebirth is another red light as well.

Subscribe to our newsletter for daily alerts on cyber events, you can also follow us on FacebookLinkedinInstagramTwitter and Reddit.

You can reach out to us via Twitter or Facebook, for any advertising requests.

Share the article with your friends
John Greenwood

He has been working with Cybersec and Infosec market for 12+ years now. Passionate about AI, Cybersecurity, Info security, Blockchain and Machine Learning. When he is not occupied with cybersecurity, he likes to go on bike rides!

Recent Posts

Top 11 Log Management Tools for Efficient System Management

Discover the top 11 log management tools for efficient system management and monitoring. Learn about…

2 weeks ago

Top 5 Threat Intelligence Tools For 2024

Explore the top 5 threat intelligence tools, their features, and how they enhance cybersecurity against…

2 weeks ago

Privileged Access Management: 5 Best PAM Solutions in the Market

Explore the top 5 best PAM Tools, market trends, and expert insights to secure the…

3 weeks ago

Apple Device Management: Top Solutions for iOS and macOS Management

Explore the top solutions for Apple Device Management including to iOS Device Management and macOS…

4 weeks ago

IAM Software: Top 5 IAM Solutions for Enterprise Security

Find the top 5 IAM software solutions, explore their features, and find the best tools…

4 weeks ago

Top 5 MDM Tools for 2024 – Best Mobile Device Management Software

MDM software is used to manage smartphones, tablets, laptops, kiosk devices and iPads and more.…

4 weeks ago