
Smashing Security A hacker doxxes himself, and social engineering-as-a-service
32 snips
Dec 4, 2025 Rik Ferguson is an experienced cybersecurity professional known for sharing insights on cybercrime trends. In this discussion, a teenage hacker inadvertently doxxes himself while mocking a sextortion scammer. Rik highlights how essential stolen data has become for cybercriminals and predicts a grim outlook for 2026, citing a rise in ransomware and social engineering-as-a-service. The conversation also addresses notable data breaches and their consequences, reflecting on how operational security mishaps can have serious real-world repercussions.
AI Snips
Chapters
Transcript
Episode notes
Hacker Doxxes Himself With Screenshot
- A Scattered Lapsus Hunters admin called Saif (aka Ray) mocked a sextortion email by posting a screenshot to Telegram.
- He exposed his actual password and was unmasked by Brian Krebs using previously leaked credential databases.
Ignore Sextortion Threats
- If you receive a sextortion email, do not reply or pay; delete it immediately.
- Treat the claimed password as likely from an old breach, not proof of live compromise.
Journalism Unmasks Hacker Via Family Clues
- Krebs discovered browser autofill and shared PC artifacts that linked the ProtonMail account to real family members.
- Contacting the suspect's father led to a Signal reply from the son who then engaged with Krebs.
