• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

FIN7 Pen Tester Gets Five Years Behind Bars

You are here: Home / General Cyber Security News / FIN7 Pen Tester Gets Five Years Behind Bars
April 11, 2022

A Ukrainian male has been jailed in the US for 5 decades following doing work for infamous money criminal offense group FIN7.

Denys Iarmak, 32, was arrested in Bangkok in November 2019 and extradited to the US, in which he pleaded guilty previous November to 1 count of conspiracy to dedicate wire fraud and a person count of conspiracy to dedicate personal computer hacking.

He was accused of operating as a pentester for FIN7 (aka Carbanak Group), which reportedly stole above 20 million credit score card information from a lot more than 6500 position-of-sale (POS) terminals at countless numbers of US companies given that 2015.

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


These attacks, some of which had been also targeted at companies outside the house the US, like those in the UK, France and Australia, are mentioned to have price in excessive of $1bn.

The restaurant, gambling and hospitality industries have been singled out for exclusive treatment method by the group, with common chain firms such as Chipotle Mexican Grill, Chili’s, Arby’s, Purple Robin and Jason’s Deli all impacted.

Attacks had been relatively very simple in their execution: phishing e-mails loaded with booby-trapped attachments were qualified at company staff members, with the group typically pursuing up by means of phone to make positive victims downloaded the malware. The resulting stolen details was place up for sale on carding web sites, in accordance to the Department of Justice (DoJ).

From November 2016 to November 2018, Iarmak appears to have played a important purpose in the group, applying Jira challenge administration software package to coordinate malicious action and network intrusions.

“Iarmak was straight involved in coming up with phishing email messages embedded with malware, intruding on victim networks, and extracting data this sort of as payment card information and facts,” claimed US lawyer Nicholas Brown of the Western District of Washington.

“To make matters even worse, he ongoing his work with the FIN7 criminal company even after the arrests and prosecution of co-conspirators. He and other folks in this cybercrime team made use of hacking methods to fundamentally rob countless numbers of places of many cafe chains at as soon as, from the ease and comfort and security of their keyboards in distant nations.”

Iarmak will join FIN7 co-conspirators Fedir Hladyr (10 several years) and Andrii Kolpakov (7 a long time) at the rear of bars.


Some sections of this report are sourced from:
www.infosecurity-journal.com

Previous Post: «microsoft's new autopatch feature to help businesses keep their systems Microsoft’s New Autopatch Feature to Help Businesses Keep Their Systems Up-to-Date
Next Post: Raspberry Pi Ditches Default Logins to Boost Security Cyber Security News»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • CISA Unveils Ransomware Notification Initiative
  • WooCommerce Patches Critical Plugin Flaw Affecting Half a Million Sites
  • GitHub Updates Security Protocol For Operations Over SSH
  • Malicious Python Package Uses Unicode Trickery to Evade Detection and Steal Data
  • Some GitHub users must take action after RSA SSH host key exposed
  • THN Webinar: Inside the High Risk of 3rd-Party SaaS Apps
  • Pension Protection Fund confirms employee data exposed in GoAnywhere breach
  • GitHub Swiftly Replaces Exposed RSA SSH Key to Protect Git Operations
  • Now UK Parliament Bans TikTok from its Network and Devices
  • IRS Phishing Emails Used to Distribute Emotet

Copyright © TheCyberSecurity.News, All Rights Reserved.