New and scoopy, by me: Who Runs the Ransomware Group 'The Gentlemen?'

A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of hackers through an aggressive recruitment strategy that promises affiliates 90 percent of any ransom paid by victims. This post examines clues pointing to a real life identity for the administrator of The Gentlemen ransomware group.

https://krebsonsecurity.com/2026/06/who-runs-the-ransomware-group-the-gentlemen/

#thegentlemen #ransomware #cybercrime #breadcrumbs

It will be interesting to see how The Gentlemen respond to having their dear overlord identified in real life. Already there is some butthurt on the group's threads across a couple of RU hacker forums.

One thing I didn't mention in the story is the potential consequences of top RU hackers being outed. At a minimum, those tend to include having one's accounts on the major forums deleted. Sure, the person can just create a new identity and resurface, but from then on they suddenly have several more concerns to deal with on a regular basis, such as interference and shakedowns from tax authorities and local police, extortion or even kidnapping for their considerable ill-gotten crypto wealth.

What's remarkable is that this guy isn't the only major ransomware head honcho who was too careless with their personal information. Stay tuned.

@briankrebs Thanks for the update! I’m curious also about how the story plays out.