‘Robin Hood' Hackers Donate Stolen Money

A hacking group going by the name of Darkside has attempted to donate around $20,000 in stolen Bitcoin to charity the first known instance for cyber criminals. Despite having extorted millions of dollars from corporate victims, Darkside claim that they want to "make the world a better place".

In a message posted on the Dark Web, Darkside posted receipts for $10,000 in Bitcoin donations to two charities but Children International, says it won’t keep the money. 

The recipients of Darkside's generosity are Children International, which supports children, families and communities in South East Asia, Central America, Mexico and  the US. Also,The Water Project, which works to improve access to clean water in sub-Saharan Africa. Children International say they wont keep the money.

In the blog post on 13 October, the hackers claim they only target large profitable companies with their ransomware attacks and analysis of the crypto-currency market confirms they are actively extorting funds from victims. There is also evidence they may have links to high-profile attacks on companies including Travelex, driven into bankruptcy a crippling ransomware attack in January 2020.

The way the hackers paid the charities is also a possible cause for concern. Darkside used a US-based service called The Giving Block, which is used by 67 different non-profits from around the world including Save the Children, Rainforest Foundation. The Giving Block describes itself "the only non-profit specific solution for accepting crypto-currency donations". 

The Giving Block told the BBC it was not aware these donations were made by cyber-criminals, claiming that were still working to determine if these funds were actually stolen.  The company did not clarify if this means returning the stolen money to the criminals, or attempting to reimburse Darkside's victims.

It remains unclear whether that would mean returning the money to the hackers, or whether The Giving Block will give that money back to one of the victims of the Darkside hacker's ransomware attack.

ITPro:          Coindesk:        Forbes:        BornCity:     Web24

You Might Also Read:

A Charity Defrauded By Email:

 

« US Invests Big In Space Force Cyber Security
Webinar: How to enhance SOC efficiency for the AWS Cloud »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

GigaOm

GigaOm

GigaOm's mission is to provide enterprises with information and analysis to help them make better decisions about technology.

GovCERT.HK

GovCERT.HK

GovCERT.HK is the Government Computer Emergency Response Team for Hong Kong.

Oracle Cloud Security

Oracle Cloud Security

Oracle’s cloud security solutions enable organizations to implement and manage consistent security policies across the hybrid data center.

Systancia

Systancia

Systancia offer solutions for the virtualization of applications and VDI, external access security, Privileged Access Management (PAM), Single Sign-On (SSO) and Identity and Access Management (IAM).

Sparta Consulting

Sparta Consulting

Sparta Consulting is an information management and business development full service provider.

Havelsan

Havelsan

HAVELSAN is a leading technology company in Turkey developing indigenous systems for domestic and foreign military, public and private sector clients.

SMESEC

SMESEC

SMESEC is a lightweight Cybersecurity framework for protecting small and medium-sized enterprises (SME) against Cyber threats.

CybernetIQ

CybernetIQ

CLAW by CybernetIQ is the industry's most advanced SOAR platform helping unify all cybersecurity tools under one umbrella and providing organizations faster, better and more accurate cybersecurity.

Cynexlink

Cynexlink

Cynexlink offers Managed IT Services with Security, Network, Storage & Cloud solutions for all size of business.

British Security Industry Association - CySPAG

British Security Industry Association - CySPAG

CySPAG is a special interest group within the British Security Industry Association (BSIA) focused on reducing the risk of product related cybercrime.

ThreatX

ThreatX

ThreatX provides complete web application & API protection to address expanding app footprints and complex attacks.

Fusion Risk Management

Fusion Risk Management

Fusion Risk Management focuses on operational resilience encompassing business continuity, risk management, IT risk, and crisis and incident management.

Core4ce

Core4ce

Core4ce is a mission-oriented company that serves as a trusted partner to the national security community.

Ventum Consulting

Ventum Consulting

Ventum Consulting stands for digitalization, networking and agilization. We take this up on the strategic, professional and technical side and support our customers in the digital transformation.

Sage IT

Sage IT

Sage IT offer a wide range of professional and consulting services to help organizations overcome the challenges of today's ever-changing business environment.

XeneX

XeneX

XeneX Cloud Security Services address enterprise-class security challenges by enabling DevOps and Security teams to access a shared source of truth.