The Luna Moth Files Weren’t Hacked. Here’s How They Leaked.
Internal files linked to Silent Ransom Group, also known as Luna Moth, surfaced on an onion site without explanation. The group denied any breach, but an investigation suggests the files are genuine and that the leak did occur.
Why this matters: Ransomware groups getting exposed by their own leaked data is not irony. It is useful. These are criminal operations that make money by threatening to publish other people's stolen files. When their own internal data spills out, it can reveal how they operate, who they target, and how they communicate. That is the kind of transparency that usually only benefits investigators and victims. The denial is also worth watching. Groups that lie about their own breaches will certainly lie about what they took from yours.
Who should care: Cybersecurity · Privacy officers · Administrators
This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.