US indicts Snowflake hackers who extorted $2.5 million from 3 victims

Justice

The U.S. Department of Justice has unsealed the indictment against two suspected Snowflake hackers, who breached more than 165 organizations using the services of the Snowflake cloud storage company.

Connor Riley Moucka and John Erin Binns are accused of using credentials, obtained with the help of info-stealing malware, to hijack Snowflake accounts that were not protected by multi-factor authentication

Moucka and Binns exfiltrated terabytes of data from various companies and demanded ransom payments in exchange for deleting the stolen information.

According to the indictment, the two hackers stole “approximately 50 billion customer call and text records” from a “major telecommunications” company in the U.S. 

One company fitting the profile that suffered a major data breach in the same timeframe as described in the indictment is AT&T.

AT&T disclosed in July that call logs of 109 million customers were exposed during the incident and that the data was accessed from an online database on the company’s Snowflake account.

As per the indictment, Moucka and Binns received around mid-May a ransom payment from the telco provider in the form of cryptocurrency.

They tried to hide the source and destination of the funds through “a complex series of cryptocurrency transactions,” which included converting the payments into Monero cryptocurrency.

With some victims, the attackers engaged in double extortion, where they tried to get a new ransom payment from a breached company that had already paid the initial demand.

The court document notes that the two hackers and their co-conspirators extorted three victims for at least 36 Bitcoins, or $2.5 million at transaction time.

Apart from AT&T, data breaches linked to Snowflake attacks affected hundreds of millions of individuals, customers of TicketmasterSantanderPure StorageAdvance Auto PartsLos Angeles UnifiedQuoteWizard/LendingTree, and Neiman Marcus.

To make a profit with the data stolen from victims that did not pay the ransom, the hackers advertised it to potential buyers on multiple hacking forums.

Moucka (aka “Waifu” and “Judische”) was arrested in late October 2024 in Canada at the request of the United States, who suspected the man of having masterminded the data theft operation that impacted over 165 organizations.

The other hacker was arrested in Turkey this year in May and his name is John Erin Binns (aka “irdev” and “j_irdev1337”), who in 2021 claimed the major attack on T-Mobile and mocked the company’s security in interviews to the media.

The two now face multiple counts for various cybercrime charges, including wire fraud, securities fraud, conspiracy to commit fraud, unauthorized access and breach of computer systems, data theft, and privacy violations.

If convicted, the two could face significant prison sentences, as the announced charges carry from 5 to up to 25 years of imprisonment each, and a total of 60 years.

Additionally, the two will have their assets and proceeds seized by the government, including bank accounts, vehicles, real estate, and any other valuables obtained as a result of the alleged offenses.

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
Vodafone solves big problem of Android smartphones! thumbnail

Vodafone solves big problem of Android smartphones!

Por vezes a resolução de problemas complicados nos smartphones não passa pelos fabricantes mas sim pelos operadores. Ora foi exatamente isso que aconteceu com a Vodafone. É que este operador está a lançar um serviço muito inovador e importante. De facto, com ele, a Vodafone resolve um grande problema dos smartphones Android! Falo das mensagens…
Read More
HONOR MWC 2022 događaj zakazan za 28. februar, evo šta se sve očekuje thumbnail

HONOR MWC 2022 događaj zakazan za 28. februar, evo šta se sve očekuje

28.01.2022 15:21 | Mobile „Pridružite nam se na MWC Barcelona 2022 i svedočite snazi magije“, kaže kompanija, nagoveštavajući lansiranje novih HONOR Magic proizvoda na događaju.Možemo očekivati da će HONOR Magic V, prvi sklopivi pametni telefon kompanije, lansirati globalno zajedno sa HONOR Magic3 serijom koja uključuje modele Magic3, Magic3 Pro i Magic3 Pro+ koji su predstavljeni…
Read More
GNOME 42带来新的屏幕截图应用 界面大改 thumbnail

GNOME 42带来新的屏幕截图应用 界面大改

去年Google Summer of Code期间,GNOME开发了一个更新的屏幕截图和屏幕记录器用户界面,这个改进后的截图/截屏用户界面在本周被合并到GNOME 42中。在此之前,GNOME允许屏幕录制,但这是通过组合键来完成而不是通过GNOME Screenshot用户界面。 只有键盘快捷键才能调出的屏幕录制启动很显然对用户不是很友好,不仅如此,GNOME截屏应用还缺乏在替代品中发现的各种功能。GNOME 42的这个新实现能够从一个单一的用户界面提供屏幕截图和屏幕录像,它本身已经是GNOME Shell的一部分。新的屏幕截图界面在代码审查了五个月后于本周被合并,同时也取决于各种Mutter的变化,今天合并的是新用户界面的截屏部分。通过GSoC学生开发者Ivan Molodetskikh的这篇博文,可以了解到更多关于这个新的GNOME屏幕截图界面的细节:https://imolodetskikh.wordpress.com/2021/06/29/gsoc-2021-gnome-shell-screenshot-ui/在即将于3月23日发布的GNOME 42.0中,可以看到这个新的用户界面和许多其他功能。了解更多:https://gitlab.gnome.org/GNOME/gnome-shell/-/merge_requests/1954
Read More
Index Of News