20 June 2023

Reddit hackers threaten to leak 80 GB of data, demand $4.5M ransom


Reddit hackers threaten to leak 80 GB of data, demand $4.5M ransom

The BlackCat (ALPHV) ransomware gang has taken responsibility for a breach at social media giant Reddit earlier this year and is threatening to leak 80GB of data stolen from the company if a $4.5 million ransom demand is not paid.

The group is also demanding that Reddit roll back its controversial decision to charge for access to its API. The Reddit APIs offer access to its data for third-party apps to build user utilities, research, and games. Effective July 1, the updated rules would require third-party apps to pay approximately $1 per user per month for API access.

This decision sparked a massive protest, with nearly 8,000 communities on the platform going dark at one time.

A Reddit spokesperson declined to comment on the matter but confirmed that BlackCat’s claim is related to a security breach in February 2023.

In a February blog post Reddit revealed it was the victim of a phishing campaign where attackers stole data from its internal systems after obtaining an employee’s credentials. The stolen information is said to have included “limited Reddit code, limited contact information for a small number of company contacts and employees (current and former), as well as limited advertiser information (no high-risk data was accessed such as credit card details, company financial information, account passwords, campaign strategy or performance).”

The BlackCat gang says it made two attempts to contact the company - in April and June - but “there was no attempt to find out what we took.”

Back to the list

Latest Posts

What is Vulnerability Management? A Beginner's Guide

What is Vulnerability Management? A Beginner's Guide

In this article will try to cover basics of vulnerability management process and why it is important to every company.
11 September 2024
Cyber Security Week in Review: September 6, 2024

Cyber Security Week in Review: September 6, 2024

In brief: the US charges Russian GRU hackers for attacks on Ukraine, Apache, Cisco, Zyxel patch high-risk flaws, Google fixes Android zero-day, and more.
6 September 2024
Threat actors using MacroPack Red Team framework to deploy Brute Ratel, Havoc and PhantomCore

Threat actors using MacroPack Red Team framework to deploy Brute Ratel, Havoc and PhantomCore

Some of the documents appeared to be part of legitimate Red Team exercises, while other were intended for malicious purposes.
5 September 2024