REGENDarySumanai
Mysterious Capitalist
Miembro del personal
Global Moderator
True & Honest Fan
kiwifarms.net
- Registrado
- 8 de Nov, 2017
Sigue el video de abajo para ver cómo instalar nuestro sitio como una aplicación web en tu pantalla de inicio.
Nota: Esta función puede no estar disponible en algunos navegadores.
Sorry to dig up the dirt and quote an old post, I was scraping this thread to see whether Statewins had been mentioned. They claim to be in direct collaboration with that Libyan degenerate "Schutz", based on this I'd say the link is incredibly close. The website is open to "content submissions" in exchange for cash, which is of course, directly referenced in the Sextortion Guide. Someone out there with some more knowledge of this region could undoubtedly make a founding link between these two.What are your thoughts on the relationship between StateWins and the author of the Sextortion Guide?
I was just looking into this last week.offering a blackmailing service - provided by a person (or group) named "NoFear". They have explicitly claimed they will blackmail "anyone except people that are tied to law enforcement and Military".
I have no idea how this website is even operating on the clearnet. Having a ,pk domain apparently makes your website untouchable.A website named "Statewins" appears to be operating with even greater depravity
I personally think these people only interacted with COM back when 764 was at its peak, considering that they have been doing this pre-764. Not many of them have been caught, so their OPSEC is much better compared to your average retarded edgy extorter.This website appears to have been running since 2018, under a variety of different names. Clearly, whoever/ whomever is running this group has been in either close orbit or direct cahoots with COM for a while now.
Some more aliases of extorters:
I think this is a completely sensible connection to make. If NoFear (who appears to brand himself as MasterNF or Master No Fear) has been operating for as long as these websites boast, then I can imagine he's enough of a degenerate to write something long-form like the Sextortion Guide, under the illusion that he's completely untouchable.From the way NoFear was described, I assume he has to be the one who wrote the sextortion guide. The guide mentioned how the author has interacted with all of the main sextorters and how he is the greatest out of all of them. He directly mentioned Starkylol, Snapgod, and Ruben, commenting on how they were caught.
If anyone can link these addresses to "NoFear", "NoFearGod", "MasterNoFear" or "MasterNF", then we have the author confirmed. But this is probably something for the alphabet boys.Donations were taken here:
BTC Wallet: bc1qtf44qmjnew4vekhl79t3xvucd7e2c2px3uv7tr
Etherium: 0xD98F14B4c8B42EB57e809C9A318930440365Eb6c
The guide was first written near February 20th, 2024, given that the author wrote "Funnily enough, as I write this, just today Binance delisted Monero (XMR) from their platform"I think this is a completely sensible connection to make. If NoFear (who appears to brand himself as MasterNF or Master No Fear) has been operating for as long as these websites boast, then I can imagine he's enough of a degenerate to write something long-form like the Sextortion Guide
His method of being completely untouchable:under the illusion that he's completely untouchable.
The laundering method is as follows:It'll be an expensive minefield trying to un-launder that shit
I can't imagine how painfully slow his connection must be, especially for video streaming. Might as well use a 56K modem. Not to mention getting capcha checked everywhere you go.Your PC (Real IP) -> Your PC (VPN IP) -> Remote Desktop Connection (Host IP) -> VMWare (Host IP) -> VMWare (VPN IP) -> PuTTy (Website Host IP) / Telegram (VMWare VPN IP)
Imagine just not going in purely on naked IP without browser safety check, firewall rules, or antivirus. Go gigachad retard level of OPSec because it's so fucking stupid that no one will expect it.I can't imagine how painfully slow his connection must be, especially for video streaming. Might as well use a 56K modem. Not to mention getting capcha checked everywhere you go.
Where do you report these people's UI, LS to the proper authorities? Which everyone should do. I know when I posted interact with the Lowell Cows, but I think there's an exception when people are hosting actual CP. On the main part of the Internet.A website named "Statewins" appears to be operating with even greater depravity, offering a blackmailing service - provided by a person (or group) named "NoFear". They have explicitly claimed they will blackmail "anyone except people that are tied to law enforcement and Military".
This would certainly bridge the gap between the advertisement of the Blackmail Service, noting that their degenerate of choice has worked with other infamous extortionists. Assuming that the author is only referring to those who went by a moniker - and not claiming that they personally have interacted with thousands of perpetrators.However, not a single one of them was even close to being good, and I am able to say this with certainty because I have had direct interaction with each and every one of them.
I had a look through the transactions, and they do appear to be using this exact method. Not being too crypto-savvy myself, I struggle to make sense of the data. If anyone wants the CSV I can drop it.When transferring Monero, "it is crucial to wait between transfers and never transfer the exact or nearly exact amount that you received from exchange."
I typically opt for the usuals. The domain hosting services, Cloudflare (if applicable), FBI tip line, Europol, and IWF. This website's existence in itself is an outrage, besides it being live on the surface web.Where do you report these people's UI, LS to the proper authorities?
"I am your master now"I can't imagine how painfully slow his connection must be, especially for video streaming.
FBI is looking for more victims of Ryan Catello, and released more pictures of the freak:An online account using the name “Sedykh Ryazanov” might have groomed the students to carry out the attack in Tacloban and potentially had links to 764, according to Hontiveros.
How did you manage to find the part about being from Libya?They claim to be in direct collaboration with that Libyan degenerate "Schutz
I can't imagine how painfully slow his connection must be, especially for video streaming. Might as well use a 56K modem. Not to mention getting capcha checked everywhere you go.
Remote Desktop Connection (Host IP) -> VMWare (Host IP) -> VMWare (VPN IP) -> PuTTy (Website Host IP) / Telegram (VMWare VPN IP)
It's been long theorised throughout this thread, if I'm not mistaken.How did you manage to find the part about being from Libya?
Here are some other OPSEC related things he talks about:And the author behind it does seem to be opsec conscious
"When buying RDP service, you will have to make sure to buy an expensive one that has VT-enabled. Once you own an RDP, you cannot use a VPN to mask your RDP IP address. If you try to do so, your RDP PC will continue to work, but you will not be able to connect and use it since the IP address changed due to you using a VPN. This is why VT-enabled RDPs are crucial, because this is where Virtual Machine come in."I call your bluff. I doubt the cheap VPS/RDP providers, hosted in shit hole countries, that they rent out to you using XMR, offer this feature
Here are some other OPSEC related things he talks about:
"DEVICE: Samsung Smartphone (OneUI) Samsung phones would be the ideal choice for sextortion activities. Samsung's design and features lend themselves well to such activities, making them highly suitable for those who engage in sextortion."
"As for where to store your physical M-DISCs when the sextortion content is stored, you should never store them anywhere inside your house, even if they are hidden. It is recommended to store your physical M-DISCs in a secure off-site location, such as burying them in a plastic zip bag in your backyard or at a trusted friend or family member's house."
"I personally use Mullvad; it's cheap, anonymous login information; you do not need to use an email or password; it has obsfucation, meaning your ISP cannot even see you are using a VPN, multi-hop, and quantum secure tunnel."
After cleaning his sextortion money, he uses Bitrefill to purchase giftcards, saying it is "the best way to spend your sextortion money, and it is the one I personally use myself."
"When buying RDP service, you will have to make sure to buy an expensive one that has VT-enabled. Once you own an RDP, you cannot use a VPN to mask your RDP IP address. If you try to do so, your RDP PC will continue to work, but you will not be able to connect and use it since the IP address changed due to you using a VPN. This is why VT-enabled RDPs are crucial, because this is where Virtual Machine come in."
"DEVICE: Samsung Smartphone (OneUI) Samsung phones would be the ideal choice for sextortion activities. Samsung's design and features lend themselves well to such activities, making them highly suitable for those who engage in sextortion."
"As for where to store your physical M-DISCs when the sextortion content is stored, you should never store them anywhere inside your house, even if they are hidden. It is recommended to store your physical M-DISCs in a secure off-site location, such as burying them in a plastic zip bag in your backyard or at a trusted friend or family member's house."
One remarkable aspect of LAPSUS$ was that its members apparently decided not to personally download or store any data they stole from companies they hacked. They were all so paranoid of police raiding their homes that they assiduously kept everything “in the cloud.” That way, when investigators searched their devices, they would find no traces of the stolen information.
But this strategy ultimately backfired: Shortly before the private LAPSUS$ chat was terminated, the group learned it had just lost access to the Amazon AWS server it was using to store months of source code booty and other stolen data.
“RIP FBI seized my server,” Amtrak wrote. “So much illegal shit. It’s filled with illegal shit.”
The retailer refused to pay, evicted the intruders, and spent at least $2 million cleaning up. According to those records, Finnish officers seized two 2-terabyte hard drives when they stopped Stokes at Helsinki airport as he tried to board a flight to Japan.
"When buying RDP service, you will have to make sure to buy an expensive one that has VT-enabled. Once you own an RDP, you cannot use a VPN to mask your RDP IP address. If you try to do so, your RDP PC will continue to work, but you will not be able to connect and use it since the IP address changed due to you using a VPN. This is why VT-enabled RDPs are crucial, because this is where Virtual Machine come in."
If you try to do so, your RDP PC will continue to work, but you will not be able to connect and use it since the IP address changed due to you using a VPN. This is why VT-enabled RDPs are crucial, because this is where Virtual Machine come in."
Falder in some ways was a standout case, not brown, upper middle class, apparently well-liked, if the little info we have of him is true. I can’t help but to think how common this is among guys like this, they know how wrong what they’re doing is, so they end up telling someone about it in certain ways, direct or indirectly.RealGirls (Matthew Falder, arrested)
They arrested some hacker in the UK with millions in his wallet because this exact reason (maybe not the same site, I don't know). The retard bought giftcards connecting him with the hack, and then used them to order food to his own house. It only adds an extra hop, but if you're using the giftcards yourself, it's only a matter of time before they track you down. I am sure there are ways to mitigate this, but they probably include risks. It does not seem like a very scalable method to cash out important sums of money.After cleaning his sextortion money, he uses Bitrefill to purchase giftcards, saying it is "the best way to spend your sextortion money, and it is the one I personally use myself."
I believe you're talking about 'Operator,' otherwise known as Earth2Star, Everlynn, etc. You're correct in that one of the things the feds brought up was the cryptocurrency tx history being used to spend money on takeouts and gift cards, but he was essentially unmasked/doxed as early as the Lapsus$ days by his autistic, low IQ (like clinically), member 'White'.They arrested some hacker in the UK with millions in his wallet because this exact reason (maybe not the same site, I don't know). The retard bought giftcards connecting him with the hack, and then used them to order food to his own house. It only adds an extra hop, but if you're using the giftcards yourself, it's only a matter of time before they track you down. I am sure there are ways to mitigate this, but they probably include risks. It does not seem like a very scalable method to cash out important sums of money.
The leader of LAPSUS$ responded by gleefully posting Asyntax’s real name, phone number, and other hacker handles into a public chat room on Telegram: