Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Cyber Tactics
    • Leadership & Management
    • Security Talk
    • Career Intelligence
    • Leader to Leader
    • Cybersecurity Education & Training
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • The Security Leadership Issue
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
    • Podcasts
    • Polls
    • Photo Galleries
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Continuing Education
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
CybersecurityManagementSecurity NewswireSecurity Leadership and ManagementLogical SecurityCybersecurity News

What do the Trickbot leaks reveal about Russian cybercrime?

Check out Episode 12 of the Cybersecurity & Geopolitical Podcast

By Security Staff
Cybersecurity & Geopolitical podcast
August 31, 2022

Trickbot malware has targeted organizations across industries for a number of years, with activity spanning cyberattacks on the healthcare sector in 2020 to malicious activity today, according to the Cybersecurity and Infrastructure Security Agency (CISA).

In the latest Cybersecurity & Geopolitical Podcast episode presented by Security magazine, Cyjax CISO Ian Thornton-Trump and Grey Hare Media CEO Philip Ingram, MBE, are joined by Cyjax Cyber Threat Intelligence Analyst Joe Wrieden, author of a report analyzing leaked information to determine how the Trickbot malware group operates. The trio discusses what they dub "cybercrime 2.0" and contextualizes the Trickbot leaks within the ongoing Russian invasion of Ukraine.

You can listen to the audio version right here below!

You can also listen on the go anytime via our Spotify and Apple podcast channels: The Security Podcasts.


Your browser does not support the audio element.


 Watch the video version here or on our LinkedIn and YouTube channels.

This month, the Cybersecurity & Geopolitical Podcast focuses on a new report on the recent Trickbot leaks that opens the lid on the workings of Russian cybercrime through an exclusive interview with its author, Joe Wrieden. Thornton-Trump, Ingram and Wrieden contextualize the leaks within the Russian invasion of Ukraine, assessing cyberattack trends and their geopolitical effects.

Since the start of the Russia-Ukraine conflict, Russian-based cybercrime groups have been placed in a difficult position. With many groups comprising a variety of nationalities, the various members have had to determine their political allegiance. Leading the charge was the Conti ransomware group, detailing its full support for the Russian government in a post on February 25, 2022. This came just one day after the invasion of Ukraine.

Thornton-Trump, Ingram and Wrieden discuss how this post caused shockwaves in both the intelligence community and within Conti itself. On February 27, a Twitter account named @ContiLeaks began posting links to the logs of internal communications by the group. Within hours, threat intelligence researchers around the world were beginning to conduct analysis into the dump, which contained over 60,000 messages. This leak caused significant unrest within the group.

A week later, a newly created account named @trickleaks began posting tweets that appeared to contain links to internal communications from members of the Trickbot group. These leaks were posted increasingly quickly, as 35 believed members’ messages were uploaded over a two-month period. This led to a total of over 1,000 communication extracts.

Each file consists of a direct communication or a group chat involving the user, which range in size. Some files contain nearly 10,000 messages. In total, there are approximately 250,000 messages, which contain over 2,500 IP addresses, around 500 potential crypto wallet addresses, and thousands of domains and email addresses.

This leak was like nothing seen before and gave cyber threat intelligence researchers unprecedented access to the Trickbot organization. Alongside these messages, PDF files were leaked which contained large amounts of information reportedly about individual members. This included full names, addresses and identification numbers. These “Doxing PDF” files enable the analysis the people behind the usernames, examining how and why they are working for the criminal organization.

For more insights into the Trickbot leaks, listen to or watch the Cybersecurity & Geopolitical Podcast episode with Thornton-Trump, Ingram and Wrieden.

KEYWORDS: cyber security research cybercrime cybersecurity and geopolitical podcast malware ransomware Russian hacking Ukraine cybersecurity

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Security's Top Cybersecurity Leaders 2024

    Security's Top Cybersecurity Leaders 2024

    Security magazine's Top Cybersecurity Leaders 2024 award...
    Security Leadership and Management
    By: Security Staff
  • cyber brain

    The intersection of cybersecurity and artificial intelligence

    Artificial intelligence (AI) is a valuable cybersecurity...
    Logical Security
    By: Pam Nigro
  • artificial intelligence AI graphic

    Assessing the pros and cons of AI for cybersecurity

    Artificial intelligence (AI) has significant implications...
    Cybersecurity Education & Training
    By: Charles Denyer
Manage My Account
  • Security eNewsletter & Other eNews Alerts
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • Crisis Response Team
    Sponsored byEverbridge

    Automate or Fall Behind – Crisis Response at the Speed of Risk

  • Perimeter security
    Sponsored byAMAROK

    Why Property Security is the New Competitive Advantage

  • Duty of Care
    Sponsored byAMAROK

    Integrating Technology and Physical Security to Advance Duty of Care

Popular Stories

Coding

AI Emerges as the Top Concern for Security Leaders

Half open laptop

“Luigi Was Right”: A Look at the Website Sharing Data on More Than 1,000 Executives

Shopping mall

Victoria’s Secret Security Incident Shuts Down Website

Laptop with coding on ground

Stepping Into the Light: Why CISOs Are Replacing Black-Box Security With Open-Source XDR

Gift cards and credit cards

Why Are Cyberattacks Targeting Retail? Experts Share Their Thoughts

2025 Security Benchmark banner

Events

June 24, 2025

Inside a Modern GSOC: How Anthropic Benchmarks Risk Detection Tools for Speed and Accuracy

For today's security teams, making informed decisions in the first moments of a crisis is critical.

July 17, 2025

Tech in the Jungle: Leveraging Surveillance, Access Control, and Technology in Unique Environments

From animal habitats to bustling crowds of visitors, a zoo is a one-of-a-kind environment for deploying modern security technologies.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products

Related Articles

  • SEC0919-Edu2-Feat-slide1_900px

    What Do You Need to Know About the California Consumer Privacy Act?

    See More
  • Beyond Passwords: How Security Can Improve Identity in 2018 - Security Magazine

    The perils of lax security hygiene and what organizations can do about it

    See More
  • healthcare 3 responsive default

    Health agencies are gathering data to combat COVID-19: Here’s why that might be a problem and what to do about it

    See More
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • eNewsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2025. All Rights Reserved BNP Media.

Design, CMS, Hosting & Web Development :: ePublishing