Feeds

Spammer charged in huge Acxiom personal data theft

Hack to spam indictment

  • alert
  • submit to reddit

SANS - Survey on application security programs

A Florida man has been charged with stealing a vast quantity of personal information from Acxiom, one of the world's largest database companies. Scott Levine, 45, of Boca Raton, Florida, was this week indicted for 144 offences in connection with the alleged attack including "conspiracy, unauthorized access of a protected computer, access device fraud, money laundering and obstruction of justice".

The US Department of Justice said the case involves what might be the "largest illegal invasion and theft of personal data to date". Federal investigators charge that Levine and staff at Snipermail stole 8.2 gigabytes of data from Acxiom's FTP servers between April 2002 to August 2003 during the course of 137 separate intrusions. The purloined data was allegedly used in email spamming campaigns by Snipermail, a Boca Raton-based company allegedly controlled by Levine.

Although investigators allege the intrusion and theft of personal information at Acxiom resulted in losses of more than $7m there is no suggestion this data was used in the more serious offence of identity fraud. The DoJ said six other people associated with Snipermail are cooperating in its investigation.

Double jeopardy

Evidence of Snipermail's alleged assault was discovered by investigators probing a separate security breach at Acxiom. Daniel Baas, 25, of Cincinnati, Ohio, pleaded guilty to that attack last December.

Acxiom clients include 14 of the 15 biggest credit card companies, seven of the top ten auto manufacturers and five of the top six retail banks. The company also analyses consumer databases for multinationals such as Microsoft, IBM, AT&T and General Electric.

Arkansas-based Acxiom has overhauled security since the attacks were uncovered. ®

Related stories

Man charged in Acxiom cracking case
Chats led to Acxiom hacker bust
Online fraud, ID theft soars

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Putin tells Snowden: Russia conducts no US-style mass surveillance
Gov't is too broke for that, Russian prez says
Snowden-inspired crypto-email service Lavaboom launches
German service pays tribute to Lavabit
Mounties always get their man: Heartbleed 'hacker', 19, CUFFED
Canadian teen accused of raiding tax computers using OpenSSL bug
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Arts and crafts store Michaels says 3 million credit cards exposed in breach
Meanwhile, Target investigators prepare for long process in nabbing hackers
Canadian taxman says hundreds pierced by Heartbleed SSL skewer
900 social insurance numbers nicked, says revenue watchman
prev story

Whitepapers

SANS - Survey on application security programs
In this whitepaper learn about the state of application security programs and practices of 488 surveyed respondents, and discover how mature and effective these programs are.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.