Exploring the Shadows: How a Swiss Cybersecurity Firm Acquires Hacker Forums to Combat


Red Report 2025

Introduction

Prodaft, a leading Swiss cybersecurity firm, has launched an innovative initiative called ‘Sell your Source.’ This groundbreaking strategy involves acquiring verified and aged accounts on notorious hacking forums. The primary aim is to infiltrate cybercrime networks, gather crucial intelligence, and expose underground criminal activities.

Objective Behind Acquiring Hacker Forum Accounts

The main objective of Prodaft’s initiative is to gain direct access to cybercriminal spaces, enabling them to monitor and analyze cybercrime dynamics closely. This access is pivotal for:

  • Collecting Intelligence: Understanding the inner workings of cybercriminal infrastructure to uncover patterns, tactics, and techniques used in cyberattacks.
  • Mitigating Threats: Detecting potential cyber threats early and devising strategies to counteract them effectively.
  • Expanding Reach: Ensuring comprehensive coverage across various darknet echelons, including the deep web and illicit marketplaces.

Criteria for Account Acquisition

Prodaft shows keen interest in procuring accounts from specific cybercrime forums such as XSS, Exploit.in, RAMP4U, Verified, and Breachforums. They offer higher compensation for accounts with moderator or administrator privileges. However, several conditions must be met:

  • Only accounts created before December 2022 are considered.
  • Accounts must not have been used for engaging in unlawful or unethical activities.
  • Accounts flagged by the FBI or other law enforcement agencies are strictly off-limits.

All transactions and transfer processes maintain strict anonymity, and while purchases are reported to law enforcement, sensitive information remains confidential.

Outreach and Payment Method

Potential sellers can initiate contact with Prodaft anonymously via TOX or email to present their accounts for review. Accepted accounts will receive a purchase offer with payment options including Bitcoin, Monero, or other preferred cryptocurrencies.

Prodaft’s Track Record

Prodaft is renowned for its aggressive and effective infiltration techniques into ransomware and cybercrime operations. A notable achievement includes penetrating a sophisticated attack automation platform used by the FIN7 hacking group. This operation helped identify over eight thousand vulnerable organizations, potentially saving them from devastating ransomware attacks.

Conclusion

With ‘Sell your Source,’ Prodaft redefines proactive cybersecurity measures by turning the tools of cybercriminals against them. By piercing through the cybercriminal veil, Prodaft not only protects businesses but also contributes significantly to global cybersecurity efforts.

Related: Major Changes in SSL/TLS Certificate Validity: Expect 47-Day Lifespans by 2029

Last Updated: April 14, 2025