Smashing Security

A hacker doxxes himself, and social engineering-as-a-service

32 snips
Dec 4, 2025
Rik Ferguson is an experienced cybersecurity professional known for sharing insights on cybercrime trends. In this discussion, a teenage hacker inadvertently doxxes himself while mocking a sextortion scammer. Rik highlights how essential stolen data has become for cybercriminals and predicts a grim outlook for 2026, citing a rise in ransomware and social engineering-as-a-service. The conversation also addresses notable data breaches and their consequences, reflecting on how operational security mishaps can have serious real-world repercussions.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ANECDOTE

Hacker Doxxes Himself With Screenshot

  • A Scattered Lapsus Hunters admin called Saif (aka Ray) mocked a sextortion email by posting a screenshot to Telegram.
  • He exposed his actual password and was unmasked by Brian Krebs using previously leaked credential databases.
ADVICE

Ignore Sextortion Threats

  • If you receive a sextortion email, do not reply or pay; delete it immediately.
  • Treat the claimed password as likely from an old breach, not proof of live compromise.
ANECDOTE

Journalism Unmasks Hacker Via Family Clues

  • Krebs discovered browser autofill and shared PC artifacts that linked the ProtonMail account to real family members.
  • Contacting the suspect's father led to a Signal reply from the son who then engaged with Krebs.
Get the Snipd Podcast app to discover more snips from this episode
Get the app