Cybercriminals have become highly effective at weaponizing data stolen from compromised computers. Over the years, an entire underground economy has emerged around infostealers, fueling the trade of stolen credentials, session cookies, and digital identities. In this talk, we'll demonstrate how the infostealer ecosystem can be turned against the criminals themselves. By combining publicly available infostealer logs with a simple yet powerful automation pipeline, it becomes possible to identify the very actors who rely on this stolen data to conduct their operations. We'll present the methodology and the results of applying it to one of the world's most notorious cybercriminal underground forums. The outcome is striking: over 100 hacker aliases were automatically linked to their underground personas and real-world identities in approximately one hour - an average of one attribution in less than 2 minutes - with virtually no manual effort. The session will walk through the technical approach, discuss its limitations and explore what large-scale automated attribution means for threat intelligence, cybercrime investigations, and defenders seeking to understand the adversaries they face.