Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

CISA adds flaws of Erlang SSH and RoundCube to famous exploited directory vulnerabilities

June 10, 2025

More than 70 organizations in several sectors aimed at Chinese Cyber ​​Spying Group

June 9, 2025

Two different botnets exploit the vulnerability of the WAZUH server to launch attacks based on peaceful

June 9, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » A Latvian hacker has been extradited to the US for his involvement in the Karakurt cybercriminal group
Global Security

A Latvian hacker has been extradited to the US for his involvement in the Karakurt cybercriminal group

AdminBy AdminAugust 23, 2024No Comments3 Mins Read
Latvian Hacker Extradited to U.S.
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


August 23, 2024Ravi LakshmananCybercrime / Ransomware

The Latvian hacker was extradited to the USA

A 33-year-old citizen of Latvia, who lives in Moscow, Russia, has been charged in the United States with alleged data theft, extortion of victims and money laundering since August 2021.

Denis Zolotarov (aka Sforza_cesarini) was charged with conspiracy to launder money, fraud and extortion under the Hobbs Act. He was arrested in Georgia in December 2023 and was extradited to the United States this month.

“Zolatarov is a member of a known cybercriminal organization that attacks victims’ computer systems around the world,” the US Department of Justice said in a statement. said in a press release this week.

“Among other things, a Russian cybercriminal group steals victims’ data and threatens to release it if the victim doesn’t pay a ransom in cryptocurrency. The group maintains a leak and auction website that lists victim companies and offers stolen data for download.”

Cyber ​​security

It is believed that Zolotarovu was an active member of the cybercriminal group, interacting with other gang members and laundering the ransom received from the victims.

Although the name of the cybercriminal syndicate was not mentioned by the Department of Justice, the complaint dated November 28, 2023. filed in U.S. District Court links the defendant to a data extortion group being tracked karakurtwhich arose as a breakaway group as a result of repression against Conti in 2022.

“Further analysis of Sforza’s messages (on Rocket.Chat) revealed that Sforza appears to have been responsible for conducting extortion negotiations with the Karakurts, as well as conducting open-source research to identify phone numbers, email addresses, or other accounts to which there could be casualties. were contacted and forced to either pay a ransom or re-enter a chat with a ransomware group,” the Federal Bureau of Investigation (FBI) said.

“Sforza also discussed efforts to recruit paid journalists to publish news articles about the victims to persuade the victims to take Karakurt’s extortion seriously.”

The FBI said in its complaint that it was able to link the online alias “Sforza_cesarini” to Denis Zalotariev by tracking bitcoin transfers made in September 2021 from a cryptocurrency wallet that was registered to an Apple iCloud account.

Law enforcement also said some of the illicit proceeds were laundered through multiple addresses before reaching a deposit address associated with Garantex, specifically a Bitcoin24.pro account with the same email address, prompting Apple to issue a warrant for search in September 2023. to retrieve records associated with an email address.

Cyber ​​security

From information released by the tech giant, the FBI said that the Rocket.Chat instant messaging ID “Sforza_cesarini” was “accessed by the same IP addresses at or around the same time, multiple times, as those used to access dennis .zolotarjov. @icloud(.)com.”

Zolatarov is the first alleged member of the Karakurt group to be arrested and extradited to the United States, which could pave the way for the identification and prosecution of additional members in the future.

“Karakurt actors contacted the victims’ employees, business associates and customers with harassing emails and phone calls to coerce the victims into cooperating,” the US government said. said in the ballot last year. “The emails contained examples of stolen data such as Social Security numbers, billing statements, private company emails, and confidential business data belonging to employees or customers.”

Did you find this article interesting? Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

CISA adds flaws of Erlang SSH and RoundCube to famous exploited directory vulnerabilities

June 10, 2025

More than 70 organizations in several sectors aimed at Chinese Cyber ​​Spying Group

June 9, 2025

Two different botnets exploit the vulnerability of the WAZUH server to launch attacks based on peaceful

June 9, 2025

Think what your IDP or CASB covers the shadow? These 5 risks prove differently

June 9, 2025

Openai prohibits chatgpt accounts used by Russian, Iranian and Chinese hacking groups

June 9, 2025

Operation malicious network supply software gets to NPM and Pypi ecosystems, focusing on millions worldwide

June 8, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

CISA adds flaws of Erlang SSH and RoundCube to famous exploited directory vulnerabilities

June 10, 2025

More than 70 organizations in several sectors aimed at Chinese Cyber ​​Spying Group

June 9, 2025

Two different botnets exploit the vulnerability of the WAZUH server to launch attacks based on peaceful

June 9, 2025

Think what your IDP or CASB covers the shadow? These 5 risks prove differently

June 9, 2025

Openai prohibits chatgpt accounts used by Russian, Iranian and Chinese hacking groups

June 9, 2025

Operation malicious network supply software gets to NPM and Pypi ecosystems, focusing on millions worldwide

June 8, 2025

Extension of the malicious browser has infected 722 users across Latin America since the beginning of 2025

June 8, 2025

New company Atomic MacOS Campation Exploaits Clickfix to focus on Apple users

June 6, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

CISA adds flaws of Erlang SSH and RoundCube to famous exploited directory vulnerabilities

June 10, 2025

More than 70 organizations in several sectors aimed at Chinese Cyber ​​Spying Group

June 9, 2025

Two different botnets exploit the vulnerability of the WAZUH server to launch attacks based on peaceful

June 9, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.