Skip to main content

Security researcher zeroes in on possible Ashley Madison hacker

security researcher zeroes in on possible ashley madison hacker ashleymadison site hack means your cheating ways could be rev
As if the drama surrounding the Ashley Madison hack wasn’t heated enough already, Avid Life Media announced they would issue a bounty of half a million Canadian dollars for information leading to the arrest of the members of Impact Team, the hacking group that perpetrated the attack. Now, the real hunt begins to identify the team, and Brian Krebs may have narrowed the search substantially.

In a post on his blog, Krebs on Security, he focuses on a Twitter user and self-identified hacker, Thadeus Zu (@deuszu) who he believes may at least have ties to Impact team. Krebs first noticed Zu after receiving the link to the manifesto threatening to leak the stolen information. Zu had tweeted the same link after it had been sent to Krebs anonymously before he had run his story, and before any other news source had published the link.

Krebs returned to Zu’s Twitter account after Avid Life announced the bounty, and was able to draw some notable parallels between Zu and the attack. His Twitter mentions a number of hacks and attacks he was involved in, and repeatedly mentions AC/DC songs. When the Ashley Madison employees came into the office on the day of the hack, their computers were playing Thunderstruck, and Zu had posted a screenshot 12 hours before the hack with the same video on Youtube in another tab while tweeting about servers and getting started.

Zu himself is a bit of a mystery, and Krebs points to his odd social media behavior as a reason that it’s hard to tie him to anyone else. Zu tweets hundreds of times every day, and despite responding to, and being part of, conversations on Twitter, he rarely tags other users. Instead, his stream is simply like listening to someone talk on the phone without knowing who they’re talking to or what the other person is saying.

All of this doesn’t mean that Zu was responsible for the attack, or even part of a group working together, but Krebs does say that if Zu isn’t behind the attack, he certainly knows who was.

Editors' Recommendations

Great, hackers are now using ChatGPT to create malware
A laptop opened to the ChatGPT website.

A new threat has surfaced in the ChatGPT saga, with cybercriminals having developed a way to hack the AI chatbot and inundate it with malware commands.

The research firm Checkpoint has discovered that hackers have designed bots that can infiltrate OpenAI's GPT-3 API and alter its code so that it can generate malicious content, such as text that can be used for phishing emails and malware scripts.

Read more
Experts fear ChatGPT will soon be used in devastating cyberattacks
The ChatGPT name next to an OpenAI logo on a black and white background.

ChatGPT has taken the world by storm in recent months, but just as it has amazed people with its technical capabilities, concerns have also been raised over its potential misuse. Now, it seems some IT leaders are worried it will soon be used in major cyberattacks, with the potential to cause devastation in the future.

In a survey of 1,500 IT and cybersecurity professionals conducted by BlackBerry, 51% of respondents believed that ChatGPT will be responsible for a successful cyberattack in the next 12 months. As much as 78% feel that attack will happen within two years, while a handful think it could happen within the next few months.

Read more
This huge password manager exploit may never get fixed
A large monitor displaying a security hacking breach warning.

It’s been a bad few months for password managers -- albeit mostly just for LastPass. But after the revelations that LastPass had suffered a major breach, attention is now turning to open-source manager KeePass.

Accusations have been flying that a new vulnerability allows hackers to surreptitiously steal a user’s entire password database in unencrypted plaintext. That’s an incredibly serious claim, but KeePass’s developers are disputing it.

Read more