Cybercrime

Ukrainian Gets 5 Years in US Prison for Aiding North Korean IT Fraud

Oleksandr Didenko sold the stolen identities of US citizens, allowing North Koreans to get hired using freelance work platforms.

Hacker

A Ukrainian national was sentenced to five years in a US prison for selling stolen identities to fraudulent North Korean workers and for facilitating the operation of laptop farms.

The man, Oleksandr Didenko, 29, of Kyiv, Ukraine, also known as Alexander Didenko, pleaded guilty in a US court in November 2025 to helping North Korean IT workers obtain employment at US companies.

According to documents presented in court, Didenko operated the Upworksell.com domain, allowing overseas IT workers to buy or rent the stolen identities of US citizens.

Using these identities, IT workers obtained employment using online freelance work platforms in California and Pennsylvania, which allowed them to create free accounts, advertise themselves, and bid on IT work contracts.

The court documents also allege that Didenko paid individuals in the US to host laptop farms at residences in Virginia, Tennessee, and California. He allegedly managed 871 proxy identities and supported the operation of at least three laptop farms.

Didenko’s activities enabled overseas individuals to access the US financial system without physically opening bank accounts in the US and to transfer employment income to foreign bank accounts.

Advertisement. Scroll to continue reading.

According to the documents presented in court, Didenko’s overseas clients received hundreds of thousands of dollars for their work at 40 US companies.

On May 16, 2024, the Upworksell.com domain was seized, and Didenko was arrested in Poland. He was extradited to the US on December 31, 2024.

In November 2025, he pleaded guilty to wire fraud conspiracy and aggravated identity theft and agreed to forfeit more than $1.4 million.

Didenko was sentenced to 60 months in prison and 12 months of supervised release and ordered to pay more than $46,000 in restitution.

Related: Romanian Hacker Pleads Guilty to Selling Access to US State Network

Related: 5 Plead Guilty in US to Helping North Korean IT Workers

Related: North Korea’s Fake Recruiters Feed Stolen Data to IT Workers

Related: Australian Man Sentenced to Prison for Wi-Fi Attacks at Airports and on Flights

Related Content

Cybercrime

Oleksii Oleksiyovych Lytvynenko has been sentenced to 4 years in prison after he was arrested in Ireland in 2023.

Malware & Threats

The stealthy toolkit embeds a backdoor in HAProxy and targets automotive and media organizations in South Korea for long-term surveillance.

Malware & Threats

Hackers pushed a poisoned arrayref version that added a dependency to fetch a malicious payload from a remote server.

IoT Security

Operation CameraSwarm targeted Dahua cameras across multiple countries, focusing on Russian and CIS telecom netblocks.

Vulnerabilities

The bug allowed attackers to gain full control of the victims’ systems and deploy the ForestTiger backdoor.

Cybercrime

Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution.

Cybercrime

Thalha Jubair and Owen Flowers were prosecuted over a 2024 cyberattack targeting Transport for London (TfL).

Cybercrime

Angelo Martino, a former ransomware negotiator, was sentenced to 70 months for helping the BlackCat/Alphv group.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version