FBI has lead in probe of 1.2 billion stolen Web credentials


  • TECH
  • Wednesday, 25 Nov 2015

Major probe: The FBI is investigating the largest collection of stolen user names and passwords.

NEW YORK: A hacker who once advertised having access to user account information for websites like Facebook and Twitter has been linked through a Russian e-mail address to the theft of a record 1.2 billion Internet credentials, the FBI said in court documents.

That hacker, known as "mr.grey," was identified based on data from a cybersecurity firm that announced in Aug 2014 that it had determined an alleged Russian crime ring was responsible for stealing information from more than 420,000 websites, the documents said.

The papers, made public last week by a federal court in Milwaukee, Wisconsin, provide a window into the Federal Bureau of Investigation's probe of what would amount to the largest collection of stolen user names and passwords.

The court papers were filed in support of a search warrant the FBI sought in Dec 2014 and that was executed a month later related to e-mail records.

The FBI investigation was prompted by last year's announcement by Milwaukee-based cybersecurity firm Hold Security that it obtained information that a Russian hacker group it dubbed CyberVor had stolen the 1.2 billion credentials and more than 500 million e-mail addresses.

The FBI subsequently found lists of domain names and utilities that investigators believe were used to send spam, the documents said.

The FBI also discovered an e-mail address registered in 2010 contained in the spam utilities for a "mistergrey," documents show.

A search of Russian hacking forums by the FBI found posts by a "mr.grey," who in Nov 2011 wrote that if anyone wanted account information for users of Facebook, Twitter and Russian-based social network VK, he could locate the records.

Alex Holden, Hold Security's chief information security officer, told Reuters this message indicated mr.grey likely operated or had access to a database that amassed stolen data from computers via malware and viruses.

Facebook and Twitter declined comment. The FBI declined to comment, and US Justice Department had no immediate comment.

The probe appears to be distinct from another investigation linked to Hold Security's reported discovery that 420,000 websites, including one for a JPMorgan Chase & Co corporate event, were targeted by the Russian hackers.

In a case spilling out of the discovery of the JPMorgan breach, US prosecutors this month charged three men with engaging in a cyber-criminal enterprise that stole personal information from more than 100 million people.

Prosecutors accused two Israelis, Gery Shalon and Ziv Orenstein, and one American, Joshua Samuel Aaron, of being involved in a variety of schemes fuelled by hacking JPMorgan and 11 other companies.

An indictment in Atlanta federal court against Shalon and Aaron names as a defendant an unidentified hacker believed to be in Russia. — Reuters

Limited time offer:
Just RM5 per month.

Monthly Plan

RM13.90/month
RM5/month

Billed as RM5/month for the 1st 6 months then RM13.90 thereafters.

Annual Plan

RM12.33/month

Billed as RM148.00/year

1 month

Free Trial

For new subscribers only


Cancel anytime. No ads. Auto-renewal. Unlimited access to the web and app. Personalised features. Members rewards.
Follow us on our official WhatsApp channel for breaking news alerts and key updates!
   

Next In Tech News

Is online shopping bad for the planet?
Tesla could start selling Optimus robots by the end of next year, Musk says
Musk's X Corp appeals dismissal of lawsuit against anti-hate group
TI forecasts Q2 revenue above estimates as analog chip demand improves
IBM nearing deal for cloud software provider HashiCorp, source says
AI boom to fuel natural gas demand in coming years, report says
TikTok has submitted risk assessment report on TikTok Lite to EU
Apple announces event on May 7 amid reports of new iPad model launches
Walmart-backed fintech One launches 'buy now, pay later' services, source says
Coca-Cola signs $1.1 billion deal to use Microsoft cloud, AI services

Others Also Read