Feeds

'World's BIGGEST online fraud': Suspect's phone had 'location' switched on

Secret Service agents: 'Hey, isn't this a little below our pay grade?'

High performance access to file storage

Two Russians arrested over their suspected involvement in the largest online fraud in US history were tracked down by analysing photos they posted to social media sites and tracking the location of one suspect's mobile phone, Reuters reports.

Four Russians and a Ukrainian national were named as suspects in a credit card hacking scam investigation involving 160 million cards and victimising organisation including NASDAQ, 7-Eleven, Carrefour, JCP, Hannaford, Heartland, Euronet and Global Payment in an indictment unsealed on Thursday. The gang allegedly acted as wholesale suppliers of stolen credit card data to carding forums resulting in losses of more than $300m to just three of the organisations they targeted.

Two of the suspects - alleged moneyman Dmitriy Smilianets, 29 and alleged hacker Vladimir Drinkman, 32, both from Moscow - were arrested in the Netherlands in June 2012. Smilianets has already been deported to the US while Drinkman continues to fight against expulsion. Three other suspects remain at large.

Alexandr Kalinin, 26, of St. Petersburg, allegedly worked with Drinkman in breaking into the systems of targeted organisations, normally employing SQL injection attacks. The gang subsequently planted trojans to harvest and extract credit card numbers and personal information from compromised systems.

Investigators reckon the duo worked with notorious double-dealing cybercrime kingpin Albert Gonzalez in the notorious 2009 hack of Heartland Payment Systems.

The indictment alleged that Roman Kotov, 32, also from Moscow, specialised in mining the networks allegedly compromised by Drinkman and Kalinin to steal valuable data. Smilianets allegedly acted as a high-tech fence by selling stolen credit details through underground forums. The fifth suspect, Mikhail Rytikov, 26, of Odessa, Ukraine, provided bulletproof hosting services to the gang, the indictment claims.

Smilianets kept a relatively high profile in Russia and an active presence on social networking sites, which was how they tracked him down.

Reuters reports Smilianets founded an electronic gaming team called Moscow 5 that travelled the world for competitions. In this role, Smilianets used a variety of online nicknames including Dima Brave and Dima Bold.

US Secret Service agents received information that Smilianets was travelling to Europe last year along with Drinkman. Investigators quickly realised that Drinkman was one of several people suspected of collaborating with Gonzalez.

"Here's the world's biggest hacker," a person familiar with the case told Reuters. "We got lucky."

The agents still didn't know where the two suspects were staying but Drinkman assisted them by posting pictures of his trip, as well as leaving his phone on, transmitting location information and narrowing down the potential locations where he might have been staying. Overnight inquiries were made at the hotels and the location of the suspects was narrowed down. The pair were eventually arrested as they boarded a... tour bus.

Reuters adds that US authorities have acted unusually by publicly naming suspects at large in an ongoing investigation. This may be a sign of frustration at a lack of co-operation from their Russian counterparts. ®

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Parent gabfest Mumsnet hit by SSL bug: My heart bleeds, grins hacker
Natter-board tells middle-class Britain to purée its passwords
Web data BLEEDOUT: Users to feel the pain as Heartbleed bug revealed
Vendors and ISPs have work to do updating firmware - if it's possible to fix this
OpenSSL Heartbleed: Bloody nose for open-source bleeding hearts
Bloke behind the cockup says not enough people are helping crucial crypto project
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Call of Duty 'fragged using OpenSSL's Heartbleed exploit'
So it begins ... or maybe not, says one analyst
Experian subsidiary faces MEGA-PROBE for 'selling consumer data to fraudster'
US attorneys general roll up sleeves, snap on gloves
NSA denies it knew about and USED Heartbleed encryption flaw for TWO YEARS
Agency forgets it exists to protect communications, not just spy on them
prev story

Whitepapers

Mainstay ROI - Does application security pay?
In this whitepaper learn how you and your enterprise might benefit from better software security.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.