Leader of Russian hacktivist group Killnet ‘retires,’ appoints new head

Avatar

Killmilk, the leader of the pro-Russia hacktivist group Killnet, announced his “retirement” this week and appointed a new head for the gang.

“From now on, I am no longer a part of Killnet! I’m retiring…,” he said in a Telegram post. Russia’s war in Ukraine “has taken a toll on my nerves and strength. I did everything I could,” he said.

This leadership change comes just a few weeks after Russian journalists uncovered the alleged identity of Killmilk, who became famous during the war for representing a collective of politically motivated hackers.

The report said Killmilk is a 30-year-old Russian citizen named Nikolai Serafimov. He is married, owns Porsche and BMW cars, and has a previous conviction for drug distribution.

Although many researchers claim that Killmilk was more of a brand maker than a hacker, in his farewell post, he said that he “recreated hacktivism all over the world.” As with many of his public pronouncements, he made claims that are hard to verify.

“I showed everyone that it is simple…I gave birth to hundreds of hack groups in Russia,” he said.

Killnet’s new “owner,” according to a separate post on the group’s official Telegram channel, is a threat actor known as Deanon Club.

“Killmilk and I have been friends for a long time, and this is the person who brought me to the masses,” Demon Club said.

Two groups did indeed have collaborated in the past. In February of this year, they established a forum and marketplace called Infinity, which offers a range of hacking services and even paid tutorials for would-be criminals.

Deanon Club also claimed distributed denial-of-service (DDoS) attacks on darknet drug marketplaces such as BlackSprut.

In an interview in 2022, the leader of Deanon Club said that their friends and family “have no idea” what kind of work they’re doing: “There is a separate story for them.” Deanon Club also didn’t speak highly of Killnet in that interview, calling the group “clowns.”

Deanon Club said that Killnet should expect “new adventures” but didn’t specify what he had in mind.

CybercrimeBriefs
Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

No previous article

No new articles

Daryna Antoniuk
is a freelance reporter for Recorded Future News based in Ukraine. She writes about cybersecurity startups, cyberattacks in Eastern Europe and the state of the cyberwar between Ukraine and Russia. She previously was a tech reporter for Forbes Ukraine. Her work has also been published at Sifted, The Kyiv Independent and The Kyiv Post.

 

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

As Meta rolls out end-to-end encryption, police warn keeping children safe ‘no longer possible’

Next Post

More evidence of Russian intelligence exploiting old Outlook flaw

Related Posts

UNC3886 Uses Fortinet, VMware 0-Days and Stealth Tactics in Long-Term Spying

The China-nexus cyber espionage actor linked to the zero-day exploitation of security flaws in Fortinet, Ivanti, and VMware devices has been observed utilizing multiple persistence mechanisms in order to maintain unfettered access to compromised environments. "Persistence mechanisms encompassed network devices, hypervisors, and virtual machines, ensuring alternative channels remain available
Avatar
Read More

Chinese Nationals Arrested for Laundering $73 Million in Pig Butchering Crypto Scam

The U.S. Department of Justice (DoJ) has charged two arrested Chinese nationals for allegedly orchestrating a pig butchering scam that laundered at least $73 million from victims through shell companies. The individuals, Daren Li, 41, and Yicheng Zhang, 38, were arrested in Atlanta and Los Angeles on April 12 and May 16, respectively. The foreign nationals have been "charged for leading a scheme
Avatar
Read More

Webinar Alert: Learn How ITDR Solutions Stop Sophisticated Identity Attacks

Identity theft isn't just about stolen credit cards anymore. Today, cybercriminals are using advanced tactics to infiltrate organizations and cause major damage with compromised credentials. The stakes are high: ransomware attacks, lateral movement, and devastating data breaches. Don't be caught off guard. Join us for a groundbreaking webinar that will change the way you approach cybersecurity.
Avatar
Read More