• About Us
  • Contact Us
  • Editorial Calendar
  • Careers
  • The Cyber Express by Cyble Vulnerability Disclosure Policy
  • Cyble Trust Portal
The Cyber Express
  • MagazineDownload
  • Firewall Daily
    • All
    • Bug Bounty & Rewards
    • Dark Web News
    • Data Breach News
    • Hacker News
    • Ransomware News
    • Vulnerabilities
    CIRO cybersecurity incident

    Canada’s Investment Regulator Investigates Cyber Incident, Data Exposure Confirmed

    The Cyber Express Weekly Roundup

    The Cyber Express Weekly Roundup: Leadership Changes, Blackouts, Malware, and AI Safety Actions

    Germany

    Germany and Israel Deepen Cybersecurity Ties With New Security Pact

    Grok AI Image Abuse

    Grok Image Abuse Prompts X to Roll Out New Safety Limits

    Poland cyberattack

    Cyberattack Hits Poland’s Power System, But Blackout Prevented

    Anchorage Police Department Cybersecurity Incident

    APD Investigates Third-Party Cybersecurity Incident, Says No Evidence of Data Compromise

    Jen Easterly to Lead RSA Conference

    Jen Easterly to Lead RSA Conference’s Ambitious Expansion Plans

    AI Security Is Top Cyber Concern: World Economic Forum

    AI Security Is Top Cyber Concern: World Economic Forum

    RedVDS, RedVDS Tool, RedVDS Infrastructure, Microsoft, Fraud, Scam

    Microsoft Crushes Cybercrime Subscription Service Behind $40 Million Fraud Spree

    Trending Tags

    • blackbyte ransomware
    • Ransomware
    • lapsus$ ransomware
    • Apple
    • Apple vulnerability
  • Essentials
    • All
    • Compliance
    • Governance
    • Policy Updates
    • Regulations
    Grok AI Image Abuse

    Grok Image Abuse Prompts X to Roll Out New Safety Limits

    RedVDS, RedVDS Tool, RedVDS Infrastructure, Microsoft, Fraud, Scam

    Microsoft Crushes Cybercrime Subscription Service Behind $40 Million Fraud Spree

    Nicole Ozer appointment

    Nicole Ozer Joins CPPA to Drive Privacy and Digital Security Initiatives

    U.S. Senators Push Apple and Google to Review Grok AI

    After EU Probe, U.S. Senators Push Apple and Google to Review Grok AI

    Government Cyber Action Plan

    UK Moves to Close Public Sector Cyber Gaps With Government Cyber Action Plan

    Donald_Trump

    Trump Orders US Exit from Global Cyber and Hybrid Threat Coalitions

    Cyber action plan, UK, cyber threats targeting political candidates

    UK Unveils £210M Cyber Overhaul as Nation Faces “Critically High” Digital Threat

    MongoBleed, MongoDB, CVE-2025-14847

    Critical ‘MongoBleed’ Flaw Exploited in the Wild to Leak Database Secrets

    DPDP Act Is Reshaping the Cyber Insurance Landscape

    Beyond Compliance: How India’s DPDP Act Is Reshaping the Cyber Insurance Landscape

    • Regulations
    • Compliance
    • Governance
    • Policy Updates
  • Knowledge Hub
    • All
    • How to
    • What is
    DPDP Rules, Cyble, DPDP Act, Cyble Vantage

    How Cyble’s Front-Row Vantage Can Help You in Complying to India’s DPDP Act

    Cybersecurity Countries

    The Top 8 Countries Leading the Cyber Defense Race in 2025

    link building

    The Link Building Secrets Your Competitors Don’t Want You to Know

    Supply Chain Attack

    Supply Chain Resilience and Physical Security: Lessons for 2025

    Healthcare cybersecurity trends of 2024

    Healthcare Cybersecurity: 2024 Was Tough, 2025 May Be Better

    CEO's Guide to Take-Down Services

    Shield Your Organization: CEO’s Perspective on Take-Down Services

    Azure sign-in Microsoft

    Microsoft Announces Mandatory MFA for Azure Sign-ins to Bolster Cloud Defenses

    Signal Proxy, Signal, Signal Ban in Russia, Signal Ban in Venezuela, Bypass Signal Ban, How to Activate Signal Proxy, Signal Proxy Server

    How to Set Up Signal Proxy to Help Bypass Censorship in Russia and Venezuela

    Third-Party Risk Management in Healthcare

    Why Healthcare CISOs Must Prioritize Third-Party Risk Management

  • Features
    • Cyber Warfare
    • Espionage
    • Workforce
      • Learning & Development
  • Business
    • All
    • Appointments
    • Budgets
    • Mergers & Aquisitions
    • Partnerships
    • Press Release
    • Startups
    Nicole Ozer appointment

    Nicole Ozer Joins CPPA to Drive Privacy and Digital Security Initiatives

    National Security Agency (NSA) appointment

    NSA Appoints Timothy Kosiba to Oversee Strategy and Cybersecurity Operations

    Shinhan Card data breach

    South Korea’s Shinhan Card Data Breach Affects 192,000 Merchants

    Cyble's Beenu-Recognized-by-ET-Edge-as-an-Impactful-CEO-2025_

    Beenu Arora, CEO & Co-Founder of Cyble, Recognized by ET Edge as an Impactful CEO 2025

    LastPass UK

    Password Manager LastPass Penalized £1.2m by ICO for Security Failures

    Coupang CEO Resigns

    Coupang CEO Resigns After Massive Data Breach Exposes Millions of Users

    Black Friday

    Black Friday Cybersecurity Survival Guide: Protect Yourself from Scams & Attacks

    Cyble and BOCRA Sign MoU

    Cyble and BOCRA Sign MoU to Strengthen Botswana’s National Cybersecurity Framework

    ARC Data Sale

    ARC Data Sale Scandal: Airlines’ Travel Records Used for Warrantless Surveillance

    • Startups
    • Mergers & Aquisitions
    • Partnerships
    • Appointments
    • Budgets
    • Research
      • Whitepapers
      • Sponsored Content
      • Market Reports
    • Interviews
      • Podcast
  • Events
    • Conference
    • Webinar
    • Endorsed Events
  • Advisory Board
No Result
View All Result
  • MagazineDownload
  • Firewall Daily
    • All
    • Bug Bounty & Rewards
    • Dark Web News
    • Data Breach News
    • Hacker News
    • Ransomware News
    • Vulnerabilities
    CIRO cybersecurity incident

    Canada’s Investment Regulator Investigates Cyber Incident, Data Exposure Confirmed

    The Cyber Express Weekly Roundup

    The Cyber Express Weekly Roundup: Leadership Changes, Blackouts, Malware, and AI Safety Actions

    Germany

    Germany and Israel Deepen Cybersecurity Ties With New Security Pact

    Grok AI Image Abuse

    Grok Image Abuse Prompts X to Roll Out New Safety Limits

    Poland cyberattack

    Cyberattack Hits Poland’s Power System, But Blackout Prevented

    Anchorage Police Department Cybersecurity Incident

    APD Investigates Third-Party Cybersecurity Incident, Says No Evidence of Data Compromise

    Jen Easterly to Lead RSA Conference

    Jen Easterly to Lead RSA Conference’s Ambitious Expansion Plans

    AI Security Is Top Cyber Concern: World Economic Forum

    AI Security Is Top Cyber Concern: World Economic Forum

    RedVDS, RedVDS Tool, RedVDS Infrastructure, Microsoft, Fraud, Scam

    Microsoft Crushes Cybercrime Subscription Service Behind $40 Million Fraud Spree

    Trending Tags

    • blackbyte ransomware
    • Ransomware
    • lapsus$ ransomware
    • Apple
    • Apple vulnerability
  • Essentials
    • All
    • Compliance
    • Governance
    • Policy Updates
    • Regulations
    Grok AI Image Abuse

    Grok Image Abuse Prompts X to Roll Out New Safety Limits

    RedVDS, RedVDS Tool, RedVDS Infrastructure, Microsoft, Fraud, Scam

    Microsoft Crushes Cybercrime Subscription Service Behind $40 Million Fraud Spree

    Nicole Ozer appointment

    Nicole Ozer Joins CPPA to Drive Privacy and Digital Security Initiatives

    U.S. Senators Push Apple and Google to Review Grok AI

    After EU Probe, U.S. Senators Push Apple and Google to Review Grok AI

    Government Cyber Action Plan

    UK Moves to Close Public Sector Cyber Gaps With Government Cyber Action Plan

    Donald_Trump

    Trump Orders US Exit from Global Cyber and Hybrid Threat Coalitions

    Cyber action plan, UK, cyber threats targeting political candidates

    UK Unveils £210M Cyber Overhaul as Nation Faces “Critically High” Digital Threat

    MongoBleed, MongoDB, CVE-2025-14847

    Critical ‘MongoBleed’ Flaw Exploited in the Wild to Leak Database Secrets

    DPDP Act Is Reshaping the Cyber Insurance Landscape

    Beyond Compliance: How India’s DPDP Act Is Reshaping the Cyber Insurance Landscape

    • Regulations
    • Compliance
    • Governance
    • Policy Updates
  • Knowledge Hub
    • All
    • How to
    • What is
    DPDP Rules, Cyble, DPDP Act, Cyble Vantage

    How Cyble’s Front-Row Vantage Can Help You in Complying to India’s DPDP Act

    Cybersecurity Countries

    The Top 8 Countries Leading the Cyber Defense Race in 2025

    link building

    The Link Building Secrets Your Competitors Don’t Want You to Know

    Supply Chain Attack

    Supply Chain Resilience and Physical Security: Lessons for 2025

    Healthcare cybersecurity trends of 2024

    Healthcare Cybersecurity: 2024 Was Tough, 2025 May Be Better

    CEO's Guide to Take-Down Services

    Shield Your Organization: CEO’s Perspective on Take-Down Services

    Azure sign-in Microsoft

    Microsoft Announces Mandatory MFA for Azure Sign-ins to Bolster Cloud Defenses

    Signal Proxy, Signal, Signal Ban in Russia, Signal Ban in Venezuela, Bypass Signal Ban, How to Activate Signal Proxy, Signal Proxy Server

    How to Set Up Signal Proxy to Help Bypass Censorship in Russia and Venezuela

    Third-Party Risk Management in Healthcare

    Why Healthcare CISOs Must Prioritize Third-Party Risk Management

  • Features
    • Cyber Warfare
    • Espionage
    • Workforce
      • Learning & Development
  • Business
    • All
    • Appointments
    • Budgets
    • Mergers & Aquisitions
    • Partnerships
    • Press Release
    • Startups
    Nicole Ozer appointment

    Nicole Ozer Joins CPPA to Drive Privacy and Digital Security Initiatives

    National Security Agency (NSA) appointment

    NSA Appoints Timothy Kosiba to Oversee Strategy and Cybersecurity Operations

    Shinhan Card data breach

    South Korea’s Shinhan Card Data Breach Affects 192,000 Merchants

    Cyble's Beenu-Recognized-by-ET-Edge-as-an-Impactful-CEO-2025_

    Beenu Arora, CEO & Co-Founder of Cyble, Recognized by ET Edge as an Impactful CEO 2025

    LastPass UK

    Password Manager LastPass Penalized £1.2m by ICO for Security Failures

    Coupang CEO Resigns

    Coupang CEO Resigns After Massive Data Breach Exposes Millions of Users

    Black Friday

    Black Friday Cybersecurity Survival Guide: Protect Yourself from Scams & Attacks

    Cyble and BOCRA Sign MoU

    Cyble and BOCRA Sign MoU to Strengthen Botswana’s National Cybersecurity Framework

    ARC Data Sale

    ARC Data Sale Scandal: Airlines’ Travel Records Used for Warrantless Surveillance

    • Startups
    • Mergers & Aquisitions
    • Partnerships
    • Appointments
    • Budgets
    • Research
      • Whitepapers
      • Sponsored Content
      • Market Reports
    • Interviews
      • Podcast
  • Events
    • Conference
    • Webinar
    • Endorsed Events
  • Advisory Board
No Result
View All Result
The Cyber Express
No Result
View All Result
Home Firewall Daily

Decoding Hackers in 2023: The Year’s Most Disruptive Cybercriminals and Cybercrime Syndicates

Analyzing past cyber incidents is crucial for understanding hacker strategies. This helps in predicting future threats and strengthening cyber defenses​.

Ashish Khaitan by Ashish Khaitan
January 1, 2024
in Firewall Daily, Hacker News
0
hackers in 2023
687
SHARES
3.8k
VIEWS
Share on LinkedInShare on Twitter

The year 2023 witnessed a surge in high-profile cyberattacks, leaving organizations shattered and the world in chaos. This digital turmoil of hackers in 2023 was exacerbated by the aggressive adoption of AI and machine learning technologies, pushing cybercriminals to employ increasingly sophisticated tactics. 

As 2024 dawns, it’s evident that the realm of cybersecurity is set for a significant evolution. With technological advancements accelerating, cyberattacks and their methodologies are expected to become more sophisticated and formidable.

However, a retrospective analysis of past cyber incidents provides valuable insights. By examining the strategies employed by hacker groups in 2023, we can better anticipate future challenges and fortify our defenses.

This article by The Cyber Express takes a deep dive into the activities of prominent hacker groups and individual hackers of 2023.

These entities were responsible for some of the most devastating attacks and data breaches, drawing considerable attention from the security community.

By scrutinizing these incidents, we aim to understand their tactics and implications, providing a groundwork for enhanced preparedness in the face of evolving cyber threats.

report-ad-banner

Hackers in 2023; Ransomware Groups, Hacktivists, & More

The cyber battlefield of 2023 witnessed a series of impactful attacks, each leaving its distinct imprint on the digital canvas. Ransomware incidents, such as the notorious Cl0p malware attack, showcased the audacity of cybercriminals.

According to cryptocurrency firm Chainalysis, 2023 was on track to be the second-worst year in terms of total extortion payments collected by ransomware gangs. 

Cl0p Ransomware group and MOVEit Attacks

A ransomware attack on the MOVEit Transfer file-transfer platform resulted in compromised global networks. Ismael Valenzuela, BlackBerry’s Vice President of Threat Intelligence, emphasizes the significant information threat actors can uncover by compromising such tools.

File-transfer platforms are attractive targets due to their often-sensitive data, exposing industries like payroll, law, U.S. government agencies, airlines, media, oil, health services, and international consulting firms. 

The attack, orchestrated by the Clop ransomware gang, exploited a vulnerability in MOVEit Transfer, differentiating it from the SolarWinds supply chain attack.

Mitigation strategies recommended by the Cybersecurity and Infrastructure Security Agency (CISA) include inventory management, access restriction, network monitoring, and regular software updates.

Alphv Ransomware Group

Not far behind in ruthlessness was the Alphv group, also known as Black Cat. With ties to the hackers responsible for the 2021 Colonial Pipeline attack, Alphv gained notoriety in September by targeting MGM Resorts International. Recently, the FBI successfully took down the darknet website of the threat actor. 

Following the arrests of ransomware operators in November 2023, the Department of Justice (DoJ) shared a decryption tool with over 500 victims affected by ALPHV.

Despite the FBI’s claims, ALPHV contends that the site was moved, asserting that the decryption key offered by the DoJ pertains to an old version.

After ALPHV resumed control of its domain, the FBI and CISA released a Joint Cybersecurity Advisory detailing tactics, techniques, and procedures (TTPs) along with updates to indicators of compromise (IOCs).  

Sandworm and Volt Typhoon

Despite sanctions, indictments, and hefty bounties, certain hackers of 2023 proved resilient this year. The notorious Sandworm, a team of hyper-aggressive military intelligence hackers associated with Russia, remained active and focused on disrupting Ukraine. 

Their third blackout cyberattack on a Ukrainian electric utility, amid a Russian air strike, exemplified their audacity. Volt Typhoon, a group dubbed as the potential “Sandworm of China,” raised alarms by planting malware in US power grid networks and critical infrastructure.

The group’s intentions remain unclear, but the specter of disruption during a crisis, such as a conflict over Taiwan, looms large.

Predatory Sparrow’s Cyber Espionage

Predatory Sparrow emerged as a relatively lesser-known entity but not without impact. The group, translating from the Persian Gonjeshke Darande, caught attention in 2022 with a cyberattack on Iranian companies.

Their claim to fame included starting a fire in a steel mill, as evidenced by posted videos. The Iranian government, while branding them as hacktivists linked to the Israeli state, faced a complex web of cyber-espionage and geopolitical tensions.

LockBit 3.0

In 2023, the LockBit ransomware group intensified its activities with the deployment of LockBit 3.0, leveraging vulnerabilities like the CVE-2023-4966 “Citrix Bleed” to infiltrate systems.

This new variant, along with other strains such as LockBit 2.0 (Red) and LockBit 3.0 (Black), contributed to a significant rise in LockBit’s share of ransomware-related incidents, reaching 27% of such activities reported to CERT-FR that year.

Notably, LockBit exploited various critical vulnerabilities across different platforms, including the Fortra GoAnywhere Managed File Transfer, PaperCut MF/NG, and Microsoft Remote Desktop, allowing them to execute remote code, escalate privileges, and access systems unauthorizedly.

Among their high-profile attacks, the disruption of the UK’s Royal Mail stood out, where they encrypted essential systems, significantly affecting international shipping services.

Twitter Data Breach Incident

In the expansive cyberattacks of 2023, the battleground stretched beyond routine targets, reaching the muddy waters of legal repercussions for hackers. Notable among them, Joseph James O’Connor, orchestrator of the 2020 Twitter breach, faced the judicial aftermath, sentenced to five years behind bars. 

On July 15, 2020, a major cybersecurity incident unfolded as 130 high-profile Twitter accounts were compromised, promoting a Bitcoin scam. Perpetrators gained access to Twitter’s administrative tools through social engineering, affecting accounts like Elon Musk, Barack Obama, and major companies.

The scam promised to double Bitcoin contributions for a purported COVID-19 relief effort. Three individuals were charged with wire fraud and more. Security experts labeled it “the worst hack of a major social media platform. 

Shakeeb Ahmed

Shakeeb Ahmed, a former Amazon security engineer, pleaded guilty to hacking and embezzling over $12.3 million from two crypto exchanges in July 2022.

The targeted platforms, Nirvana Finance and an undisclosed Solana blockchain exchange fell prey to Ahmed’s adept hacking skills. Ahmed manipulated smart contracts, inflating fees and exploiting a DeFi protocol loophole, racking up illicit gains. 

Employing tactics to obfuscate the digital trail, he used cryptocurrency mixers and shifted funds across blockchains.

Ahmed’s online activities revealed intentions to evade legal consequences, including researching strategies to thwart asset seizures. His guilty plea carries a maximum five-year imprisonment term, with sentencing set for March 13, 2024. U.S. 

The 18-year-old GTA Hacker

The human element in cybercrime manifested through the case of Arion Kurtaj, an 18-year-old hacker affiliated with the international group Lapsus$.

Despite being diagnosed with severe autism and deemed unfit for trial, Kurtaj received an indefinite hospital order for leaking unreleased Grand Theft Auto 6 clips.

His targeting of tech giants like Uber, Nvidia, and Rockstar Games resulted in approximately $10 million in damages, highlighting the complex intersection of mental health and cybercrime.

Media Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. The Cyber Express assumes no liability for the accuracy or consequences of using this information.

Share this:

  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on X (Opens in new window) X
  • Click to share on Facebook (Opens in new window) Facebook
  • More
  • Click to email a link to a friend (Opens in new window) Email
  • Click to share on WhatsApp (Opens in new window) WhatsApp

Related

Tags: Cyberattacks of 2023hackers in 2023ransomware gangransomware groupThe Cyber ExpressThe Cyber Express News
Previous Post

Unveiling the AI Frontier: LLMs and RAGs Revolutionize Possibilities

Next Post

2024 Outlook: Emerging Trends Shaping Physical Security

Next Post
Physical Security

2024 Outlook: Emerging Trends Shaping Physical Security

Threat Landscape Reports 2025

❮ ❯
Cyble-Vision


Follow Us On Google News

Latest Cyber News

CIRO cybersecurity incident
Cyber News

Canada’s Investment Regulator Investigates Cyber Incident, Data Exposure Confirmed

January 19, 2026
The Cyber Express Weekly Roundup
Firewall Daily

The Cyber Express Weekly Roundup: Leadership Changes, Blackouts, Malware, and AI Safety Actions

January 16, 2026
Germany
Firewall Daily

Germany and Israel Deepen Cybersecurity Ties With New Security Pact

January 16, 2026
Grok AI Image Abuse
Cyber News

Grok Image Abuse Prompts X to Roll Out New Safety Limits

January 16, 2026

Categories

Web Stories

Do This on Telegram, Your Bank Account Will Become Zero
Do This on Telegram, Your Bank Account Will Become Zero
If You Install the iOS 18 Beta, Your iPhone Could Be Hacked
If You Install the iOS 18 Beta, Your iPhone Could Be Hacked
Cricket World Cup Ticketing Systems Under Cybersecurity
Cricket World Cup Ticketing Systems Under Cybersecurity
Cyber Threats and Online Ticket Scams During the NBA Finals
Cyber Threats and Online Ticket Scams During the NBA Finals
Biometric Data Security: Protecting Sensitive Information
Biometric Data Security: Protecting Sensitive Information

About

The Cyber Express

#1 Trending Cybersecurity News and Magazine

The Cyber Express is a handbook for all stakeholders of the internet that provides information security professionals with the latest news, updates and knowledge they need to combat cyber threats.

 

Contact

For editorial queries: [email protected]

For marketing and Sales: [email protected]

 

Quick Links

  • About Us
  • Contact Us
  • Editorial Calendar
  • Careers
  • The Cyber Express by Cyble Vulnerability Disclosure Policy
  • Cyble Trust Portal

Our Address

We’re remote friendly, with office locations around the world:

San Francisco, Atlanta, Rome,
Dubai, Mumbai, Bangalore, Hyderabad,  Singapore, Jakarta, Sydney, and Melbourne

 

Headquarters:

The Cyber Express LLC
10080 North Wolfe Road, Suite SW3-200, Cupertino, CA, US 95014

 

India Office:

Cyber Express Media Network
HD-021, 4th Floor, C Wing, Building No.4. Nesco IT Park, WE Highway, Goregaon East, Mumbai, Maharashtra, India – 4000063

  • Privacy Statement
  • Terms of Use
  • Write For Us

© 2026 The Cyber Express - Cybersecurity News and Magazine.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Magazine
  • Firewall Daily
  • Essentials
    • Regulations
    • Compliance
    • Governance
    • Policy Updates
  • Knowledge Hub
  • Features
    • Cyber Warfare
    • Espionage
    • Workforce
      • Learning & Development
  • Business
    • Startups
    • Mergers & Aquisitions
    • Partnerships
    • Appointments
    • Budgets
    • Research
      • Whitepapers
      • Sponsored Content
      • Market Reports
    • Interviews
      • Podcast
  • Events
    • Conference
    • Webinar
    • Endorsed Events
  • Advisory Board

© 2026 The Cyber Express - Cybersecurity News and Magazine.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?
-
00:00
00:00

Queue

Update Required Flash plugin
-
00:00
00:00
Do This on Telegram, Your Bank Account Will Become Zero If You Install the iOS 18 Beta, Your iPhone Could Be Hacked Cricket World Cup Ticketing Systems Under Cybersecurity Cyber Threats and Online Ticket Scams During the NBA Finals Biometric Data Security: Protecting Sensitive Information