RaidForums

Last updated

RaidForums
RaidForums Website Logo.png
RaidForums.com Domain Seizure notice screenshot.png
Domain seizure notice on raidforums.com
Type of site
Internet forum
Available in English
Dissolved April 12, 2022;23 months ago (2022-04-12)
Successor(s) BreachForums
Country of origin United Kingdom
Founder(s) Diogo Santos Coelho, also known by his screen name "Omnipotent"
URL raidforums.com OOjs UI icon edit-ltr-progressive.svg
Advertising Yes
CommercialYes
RegistrationOptional
Users 530,000 at time of shutdown
Launched2015;9 years ago (2015)
Current statusSeized by the United States FBI

RaidForums was an English-language black hat hacking internet forum active from 2015 until 2019. The website facilitated the discussion of a variety of hacking topics and was a notable distributor of various data breaches, hacking tools, and pornography until its seizure in 2022. [1] The website was monetized via advertisements and through a tiered membership program where members with higher tiers would receive elevated access to the forum and its contents. [2] [3]

Contents

History

RaidForums began in 2015 as a platform for Twitch raiders. [4]

Domain seizure

The domain and its contents were seized by the Federal Bureau of Investigation on April 12, 2022 after a month of downtime, in collaboration with the United States Secret Service, the United States Department of Justice, and a variety of other national and international law enforcement agencies. [1]

RaidForums.com in 2021 Raid Forums 2021 Screenshot.png
RaidForums.com in 2021

Administration

The website was allegedly founded by a 21-year old Portuguese national, Diogo Santos Coelho under the screen name "Omnipotent", who was arrested on January 31, 2022 in the United Kingdom. [5] His arrest occurred pending several years of investigation after several of his devices were searched under warrant at the Hartsfield-Jackson International Airport in June 2018, suggesting he was the owner and primary administrator "Omnipotent". According to hackread.com, an administrator under screen name "Jaw" & "souls" announced the seizure officially on the forum's public Telegram channel, and redirected subscribers of the channel to RaidForums' backup domain rf.to, [2] which however went offline (and has remained offline for months) after this statement, only becoming reachable again after Diogo Santos Coelho's release on bail [6] [7] in August 2022.

Impact

At the time of its closure in 2022, the forum had over 530,000 registered users and was one of the most prolific and easily accessible clearnet illicit hacking forums. [2]

See also

Related Research Articles

<span class="mw-page-title-main">The Pirate Bay</span> Website providing torrent files and magnet links

The Pirate Bay is an online index of digital content of entertainment media and software. Founded in 2003 by Swedish think tank Piratbyrån, The Pirate Bay allows visitors to search, download, and contribute magnet links and torrent files, which facilitate peer-to-peer, file sharing among users of the BitTorrent protocol.

<span class="mw-page-title-main">Timeline of Internet conflicts</span>

The Internet has a long history of turbulent relations, major maliciously designed disruptions, and other conflicts. This is a list of known and documented Internet, Usenet, virtual community and World Wide Web related conflicts, and of conflicts that touch on both offline and online worlds with possibly wider reaching implications.

<span class="mw-page-title-main">Anonymous (hacker group)</span> Decentralized hacktivist group

Anonymous is a decentralized international activist and hacktivist collective and movement primarily known for its various cyberattacks against several governments, government institutions and government agencies, corporations and the Church of Scientology.

<span class="mw-page-title-main">LulzSec</span> Hacker group

LulzSec was a black hat computer hacking group that claimed responsibility for several high profile attacks, including the compromise of user accounts from PlayStation Network in 2011. The group also claimed responsibility for taking the CIA website offline. Some security professionals have commented that LulzSec has drawn attention to insecure systems and the dangers of password reuse. It has gained attention due to its high profile targets and the sarcastic messages it has posted in the aftermath of its attacks. One of the founders of LulzSec was computer security specialist Hector Monsegur, who used the online moniker Sabu. He later helped law enforcement track down other members of the organization as part of a plea deal. At least four associates of LulzSec were arrested in March 2012 as part of this investigation. Prior, British authorities had announced the arrests of two teenagers they alleged were LulzSec members, going by the pseudonyms T-flow and Topiary.

Teamp0ison was a computer security research group consisting of 3 to 5 core members. The group gained notoriety in 2011/2012 for its blackhat hacking activities, which included attacks on the United Nations, NASA, NATO, Facebook, Minecraft Pocket Edition Forums, and several other large corporations and government entities. TeaMp0isoN disbanded in 2012 following the arrests of some of its core members, "TriCk", and "MLT".

<span class="mw-page-title-main">KickassTorrents</span> Defunct file-sharing website

KickassTorrents was a website that provided a directory for torrent files and magnet links to facilitate peer-to-peer file sharing using the BitTorrent protocol. It was founded in 2008 and by November 2014, KAT became the most visited BitTorrent directory in the world, overtaking The Pirate Bay, according to the site's Alexa ranking. KAT went offline on 20 July 2016 when the domain was seized by the U.S. government. The site's proxy servers were shut down by its staff at the same time.

Lizard Squad Hacker group

Lizard Squad was a black hat hacking group, mainly known for their claims of distributed denial-of-service (DDoS) attacks primarily to disrupt gaming-related services.

<span class="mw-page-title-main">BTC-e</span>

BTC-e was a cryptocurrency trading platform primarily serving the Russian market, with servers located in the United States. The U.S. government seized their website and funds in 2017. It was founded in July 2011 by Alexander Vinnik and Aleksandr Bilyuchenko, and as of February 2015 handled around 3% of all Bitcoin exchange volume. The platform was eventually taken over by Russian Orthodox oligarch Konstantin Malofeev, and funds from BTC-e were used for the war in Donbass, under the control of the FSB.

<span class="mw-page-title-main">AlphaBay</span> Defunct darknet marketplace

AlphaBay was a darknet market operating at different times between September 2014 and February 2023. At times, it was both an onion service on the Tor network and an I2P node on I2P. After it was shut down in July 2017 following law enforcement action in the United States, Canada, and Thailand as part of Operation Bayonet, it was relaunched in August 2021 by the self-described co-founder and security administrator DeSnake. The alleged original founder, Alexandre Cazes, a Canadian citizen born on 19 October 1991, was found dead in his cell in Thailand several days after his arrest, with police suspecting suicide.

TheRealDeal was a darknet website and a part of the cyber-arms industry reported to be selling code and zero-day software exploits.

<span class="mw-page-title-main">Carding (fraud)</span> Crime involving the trafficking of credit card data

Carding is a term describing the trafficking and unauthorized use of credit cards. The stolen credit cards or credit card numbers are then used to buy prepaid gift cards to cover up the tracks. Activities also encompass exploitation of personal data, and money laundering techniques. Modern carding sites have been described as full-service commercial entities.

On March 27, 2016, hackers under the banner "Anonymous Philippines" hacked into the website of the Philippine Commission on Elections (COMELEC) and defaced it. The hackers left a message calling for tighter security measures on the vote counting machines (VCM) to be used during the 2016 Philippine general election on May 9. Within the day a separate group of hackers, LulzSec Pilipinas posted an online link to what it claims to be the entire database of COMELEC and updated the post to include three mirror link to the index of the database's downloadable files. The leaked files by LulzSec Pilipinas amounts to 340 gigabytes.

Hack Forums is an Internet forum dedicated to discussions related to hacker culture and computer security. The website ranks as the number one website in the "Hacking" category in terms of web-traffic by the analysis company Alexa Internet. The website has been widely reported as facilitating online criminal activity, such as the case of Zachary Shames, who was arrested for selling keylogging software on Hack Forums in 2013 which was used to steal personal information.

maia arson crimew Swiss hacker (born 1999)

maia arson crimew, formerly known as Tillie Kottmann, is a Swiss developer and computer hacker. Crimew is known for leaking source code and other data from companies such as Intel and Nissan, and for discovering a 2019 copy of the United States government's No Fly List on an unsecured CommuteAir server. Crimew was also part of a group that hacked into Verkada in March 2021 and accessed more than 150,000 cameras. She is also the founding developer of the Lawnchair application launcher for Android.

<span class="mw-page-title-main">Aubrey Cottle</span> Webmaster

Aubrey Cottle, also known as Kirtaner or Kirt, is a Canadian website forum administrator who claims to be an early member of the hacktivist group Anonymous. Cottle was involved with Anonymous during the late 2000s and in its resurgence beginning in 2020, in which the group attempted to combat the far-right conspiracy movement QAnon.

On November 13, 2021, a hacker compromised the FBI's external email system, sending thousands of messages warning of a cyberattack by cybersecurity CEO Vinny Troia who was falsely suggested to have been identified as part of The Dark Overlord hacking group by the United States Department of Homeland Security.

The Bitfinex cryptocurrency exchange was hacked in August 2016. 119,756 bitcoin, worth about US$72 million at the time, were stolen.

<span class="mw-page-title-main">BreachForums</span> Cybercrime forum

BreachForums is an English-language black hat–hacking crime forum. The website acts as an alternative and successor to RaidForums following its shutdown and seizure in 2022. Like its predecessor, BreachForums allows for the discussion of various hacking topics and distributed data breaches, pornography, hacking tools and various other services.

References

  1. 1 2 Krebs, Brian (April 12, 2022). "RaidForums Gets Raided, Alleged Admin Arrested". Archived from the original on April 18, 2022. Retrieved April 19, 2022.
  2. 1 2 3 "Hacking forum Raidforums.com allegedly seized by authorities". February 25, 2022. Archived from the original on April 25, 2022. Retrieved April 19, 2022.
  3. Lyngaas, Sean (April 12, 2022). "FBI and international partners seize control of popular hacking forum". CNN . Archived from the original on April 19, 2022. Retrieved April 19, 2022.
  4. "What It's Like to Run a Hacking Forum: A Conversation With RaidForums Owner Omnipotent". The Record by Recorded Future. January 13, 2021. Archived from the original on May 31, 2022. Retrieved June 12, 2022.
  5. "United States of America v. Diogo Santos Coelho". justice.gov. Archived from the original on August 30, 2022. Retrieved April 18, 2022.
  6. "RaidForums admin "Omni" granted conditional bail while U.K. considers U.S. extradition request". October 21, 2022. Archived from the original on October 21, 2022. Retrieved October 21, 2022.
  7. "RaidForums". Internet Archive Wayback Machine. October 21, 2022. Retrieved October 21, 2022.