Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Alleged Hacker Using Gozi Malware Extradited From Latvia to US

Alleged Cyber Criminal Extradited from Latvia to US

Latvia on Thursday extradited a programmer to the United States to stand trial for his alleged role in a global cyber theft ring that hacked into a million computers.

Alleged Cyber Criminal Extradited from Latvia to US

Latvia on Thursday extradited a programmer to the United States to stand trial for his alleged role in a global cyber theft ring that hacked into a million computers.

Latvian Deniss Calovskis, 29, and two other Europeans are suspected of hacking into computers at the US space agency NASA and stealing online banking credentials for profit.

“I can confirm that Mr Calovskis has been handed over to US Marshals and that he is already out of Latvia’s jurisdiction,” Latvian State Police spokesman Toms Sadovskis told AFP.

Calovskis’ extradition had been held up for months while he launched an unsuccessful appeal to the European Court of Human Rights. It ultimately rejected his claim that he would not be able to have a fair trial in the US.

Cybercriminals Using Gozi Virus

Fellow suspects, Russian Nikita Kuzmin and Romanian Mihai Ionut Paunescu, are already in custody in the US.

The trio are accused of using malicious computer code or malware, dubbed the Gozi Virus, to infiltrate computers across Europe and the US.

They caused “millions in losses by, among other things, stealing online banking credentials”, according to the US federal prosecutor’s office.

Advertisement. Scroll to continue reading.

Calovskis, alias “Miami”, was arrested in Latvia in November 2012 and charged with writing some of the computer code in the Gozi Virus.

He is suspected of using his expertise in programming to create “web injects”, a code that alters how banking websites appear on infected computers, prompting victims to reveal personal information.

Prosecutors say the sophisticated scam unfolded between 2005 and March 2012, adding that the virus was “virtually undetectable in the computers it infected”.

Financial losses from the virus stand “at a minimum, millions of dollars”, according to the indictment.

RelatedThe Man Behind the Gozi Trojan Attack: Mastermind or Trap?

RelatedProject Blitzkrieg Cyber Heist Called a ‘Credible Threat’

RelatedThree Charged in Worldwide Gozi Banking Malware Operation 

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

Expert Insights

Related Content

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.

Cybercrime

Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.