Who Is the Network Access Broker ‘Wazawaka?’
krebsonsecurity.com
krebsonsecurity.com
If he has been stealing money from drug dealers etc, then outing his (potential) family - or worse, someone being fitted up - could have very bad repercussions.
Belarusians that had to flee the country after August, 2020 set up a whole website where they meticulously map all those involved in stealing elections and beating protestors, see http://blackmap.org/
They even publish addresses of people who deliberately reported protestors to the authorities, together with the report summaries.
In a society run by bandits, violating privacy to expose their deeds is not even a lesser evil but a moral obligation.
Also, how is the work of Brian different from the work of Bellingcat or Navalny Team? Both are prased by media. So is Brian.
I have an answer: Privacy is a luxury, not a right. In peaceful times an democratic societies everyone can have some privacy.
When people starve to death, get beaten or killed while others amass riches, privacy means little in the face of defiance, hate and revenge.
At least Brian is a plausibly independent (from powerful governments) blogger who occasionally publishes some high-signal, low-noise content. Although this sort of doxxing is out of hand even if Russians are "fair game" to his Western audience.
Basically, Bellingcat is an "intelligence launderer" for the NATO-aligned IC. Agencies can feed them real or bogus intel and they will gladly publish it in return for $$$ and media clout. In some cases, they even fabricate propaganda as in the case of their collaborations with Navalny's team. I think they are closer to "useful idiots" rather than actual intelligence operatives, though.
What they are not is a largely independent OSINT group a la WikiLeaks. Bellingcat is firmly aligned with the most powerful government intelligence agencies on the planet and a darling to their media. They can be counted on to never undermine NATO's agenda (which Julian Assange is suffering immensely for doing), and are ostensibly compensated well for that.
[1] - https://thegrayzone.com/2021/03/24/author-bellingcat-opcw-wh...
This in not much of a proof. Max has been a regular contributor to Russia Today, the infamous tarpit of journalism.
I followed Bellingcat and Navalny Team pretty closely for many years. I dislike some of the people behind both organisations but I am sure both organisations contribute to the society in a positive way.
Anyone who did above average things exposes themselves to privacy violations. This is recognized universally for politicians, for instance, otherwise why would we require our representantives to publish their tax declarations or simply campaign publicly?
Brian Krebs, if you read this: a hearty "fuck you" from me for this action! You started something, that in the end destroyed one of the last places on the Internet, where one could still talk undisturbed. In my opinion, you are the biggest scum of all.
The board was "pr0gramm". In Krebs' words, "Multiple longtime pr0gramm members have remarked that since cha0s departed as administrator, the forum has become overrun by individuals with populist far-right political leanings."
He also justifies the "dox" because:
"So I set about trying to figure out who’s running pr0gramm. It wasn’t easy, but in the end all of the information needed to determine that was freely available online.
Let me be crystal clear on this point: All of the data I gathered (and presented in the detailed ‘mind map’ below) was derived from either public Web site WHOIS domain name registration records or from information posted to various social media networks by the pr0gramm administrators themselves. In other words, there is nothing in this research that was not put online by the pr0gramm administrators themselves."
What I think has happened is Krebs has spent too much time immersed in online troll culture, to the point where he now acts exactly like the people he writes about.
[1] https://itwire.com/images/authors-images/samvarghese/krebs_d...
Omitting that fact is incredibly misleading. For the record, I'm pretty ok seeing the crook's CV posted.
The other question of course is - can this be considered Russian sponsored if they choose not to ever prosecute? How does this end? It becomes a major career in Russia?
There are smart people in every country, of every color and language.
I doubt this is limited to ransomware - I bet customers of a "network access broker" would involve conventional malware such as spam/DoS bots, ad fraud, etc as well.
Here Russian police is lazy - if no one files a complaint, they won't do anything. Since he avoids targetting Russian organizations, law enforcement is probably completely unaware of him. Something can happen if American law enforcement contacts Russian law enforcement directly but it looks there's little cooperation there because of the mutual political animosity between USA & Russia (US/Russian embassies getting closed, ties being cut etc) I wonder what will happen if Interpol gets involved
A decade ago my town used to have a gang which operated the largest mail order bride scam in the country, all victims in US and Europe, too (i.e. none in Russia), for the same reasons. Many people in the town knew what they did and who they were (I personally knew 1 guy from there) but no one reported them to police because no one would benefit from fighting them and being labeled a snitch, and the general attitude (excuse) was that Americans and Europeans are supposedly very rich (at least, by Russian standards) so them losing $1000 here or there wasn't considered a serious problem or some moral dilemma. Police didn't care because formally no one filed an official complaint.
However, there was some foreign victim who really valued his lost money. He somehow managed to contact Russian police and thanks to his efforts the gang was eventually busted red-handed, I remember there was a TV report about the raid. As it turned out, basically it was 20-30 students spread across several rented commieblock appartments full of PC's. They made many mistakes leaving traces of their real identities (just like the guy in the OP), the one guy I knew from there was also ~18 yo, a pretty inexperienced kid, even before the raid I had suspected it's not a serious mafia cell protected by the government or anything, just a bunch of opportunistic scumbags who abuse the inertia of our police and the legal/political/linguistic barriers between our countries. To scam people or spread ransomware, all you need is programming/social engineering skills and a PC. If you are lucky and/or determined, you can earn a lot of money by just having that, no government sponsorship is required. The fact that the hacker in the OP's post also lives in Siberia in a provincial town reminds me of that student gang from my town; you wouldn't expect high-profile hackers sponsored by the federal government to use the same password for all sites they visit.
I think we can see if they are protected by authorities if Interpol requests will be flat-out rejected.