🎁 💸 Warren Buffett's Top Picks Are Up +49.1%. Copy Them to Your Watchlist – For FreeCopy Portfolio

UPDATE 4-U.S. charges 3 Ukrainians in payment card hacking spree

Published 2018-08-01, 07:52 p/m
© Reuters.  UPDATE 4-U.S. charges 3 Ukrainians in payment card hacking spree
AMZN
-
BAES
-
CMG
-
RRGB
-

(Adds that no consumer data was stolen from Emerald Queen Casino)

By Christopher Bing and Karen Freifeld

WASHINGTON, Aug 1 (Reuters) - Three Ukrainians have been arrested on criminal hacking charges including stealing payment card numbers, in attacks on more than 100 U.S. companies that cost businesses tens of millions of dollars, the U.S. Justice Department said on Wednesday.

U.S. prosecutors alleged that the three Ukrainians, who were arrested in Europe between January and June, are members of FIN7, a notorious cybercrime gang.

Victims include the Chipotle Mexican Grill (NYSE:CMG) CMG.N , Emerald Queen Hotel and Casino in Washington state, Jason's Deli, Red Robin Gourmet Burgers RRGB.O , Sonic Drive-in and Taco John's, according to the Justice Department. The Emerald Queen stopped the attack and no customer data was stolen, prosecutors said in a press release.

FIN7 has previously been linked to breaches of Trump Hotels, Whole Foods AMZN.O , Saks Fifth Avenue and Lord & Taylor, according to cyber security firm Trend Micro.

One of the three defendants, Fedir Hladyr, 33, has been transferred to Seattle from Dresden, Germany, where he was arrested. Authorities said they are seeking the extradition of the other two: Dmytro Fedorov, 44, and Andrii Kolpakov, 30.

Hladyr has pleaded not guilty and denies wrongdoing, according to his attorney, Arkady Bukh.

"There is no clear decision at this time whether (we) will go to trial or will consider a plea," Bukh said via email.

Reuters could not reach lawyers for the other two.

The three stole and sold payment card numbers and other data belonging to U.S. citizens and businesses, Assistant Attorney General Brian Benczkowski said in a statement.

FIN7 sent "phishing" emails to companies, sometimes following up with phone calls urging employees to open tainted attachments, the indictments said.

Ukrainian officials could not be reached for comment.

FIN7, also widely known as Carbanak, employs dozens of individuals who handle highly specialized tasks such as breaking into networks, stealing payment card numbers and selling stolen data on underground criminal forums, said Adrian Nish, head of threat intelligence with BAE Systems (LON:BAES).

The defendants used a front company named "Combi Security" that claims to have offices in Moscow, Haifa and Odessa, to launch some intrusions, according to court documents.

Combi Security's website describes it as an expert "in the field of comprehensive protection of large information systems from modern cyber threats."

Cybersecurity firm FireEye said it found job advertisements for Combi Security posted to several different Russian, Ukrainian and Uzbek job recruitment websites.

FIN7 stole more than 15 million customer card records from U.S. businesses and also targeted companies in Australia, France and the United Kingdom, according to U.S. prosecutors.

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.