Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

JPMorgan Hackers Plead Guilty

Two Israeli citizens, arrested in Israel in July 2015 and extradited to the US this week pleaded guilty Thursday to orchestrating a computer hacking and fraud scheme that included, but was not limited to, the theft of personal information on 83 million customers from

Two Israeli citizens, arrested in Israel in July 2015 and extradited to the US this week pleaded guilty Thursday to orchestrating a computer hacking and fraud scheme that included, but was not limited to, the theft of personal information on 83 million customers from JPMorgan.

Gary Shalon and Ziv Orenstein entered their pleas in Manhattan federal court. A third defendant, Joshua Aaron, was not present.

Prosecutors said that the current whereabouts of Aaron is unknown, although the Wall Street Journal has suggested, “Mr. Aaron, a U.S. citizen, has since been arrested in Russia and is expected to be brought to the U.S., according to people familiar with the matter.” WSJ is one of 12 companies allegedly targeted by the defendants.

The best known of the attacks was against JPMorgan, which announced in October 2014 that it had been breached with the loss of personal information on 76 million household customers and seven million businesses. In all, more than 100 million people’s personal information was stolen by the gang allegedly led by the defendants. At the time, JPMorgan thought there may have been Russian government involvement.

This data was used to further other illegal practices, including pump & dump emails scams, online casinos and the operation of an unlicensed money laundering bitcoin exchange. The charges brought in New York carry possible prison sentences of between two and 20 years each.

A separate but related indictment unveiled in Atlanta against Shalon, and Aaron claims that the brokerages E*Trade and Scottrade were also targeted; and that the information of 10 million customers was compromised.

At the time of the arrests in Israel, Anthony Murgio and Yuri Lebedev were arrested and charged in New York for operating the Coin.mx bitcoin exchange, and using it to launder bitcoin proceeds from ransomware. The FBI released a statement that said, “In doing so, Murgio, and his co-conspirators knowingly enabled the criminals responsible for those attacks to receive the proceeds of their crimes, yet, in violation of federal anti-money laundering laws, Murgio never filed any suspicious activity reports regarding any of the transactions.”

Although these are separate indictments, it is generally considered that they are related. Murgio and Aaron were apparently friends at Florida State university. Both made frequent trips to Russia, and it has been suggested that there was involvement with the Russian underground. It may have been this Russian connection that led JPMorgan to initially link its breach with the Russian government.

Advertisement. Scroll to continue reading.

*Updated

Written By

Kevin Townsend is a Senior Contributor at SecurityWeek. He has been writing about high tech issues since before the birth of Microsoft. For the last 15 years he has specialized in information security; and has had many thousands of articles published in dozens of different magazines – from The Times and the Financial Times to current and long-gone computer magazines.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

Professional services company Slalom has appointed Christopher Burger as its first CISO.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.

Cybercrime

Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.