Topics

Latest

AI

Amazon

Article image

Image Credits:PAU BARRENA / AFP / Getty Images

Apps

Biotech & Health

clime

Cloud Computing

Commerce

Crypto

Enterprise

EVs

Fintech

Fundraising

widget

game

Google

Government & Policy

Hardware

Instagram

layoff

Media & Entertainment

Meta

Microsoft

secrecy

Robotics

Security

Social

infinite

Startups

TikTok

transportation system

speculation

More from TechCrunch

Events

Startup Battlefield

StrictlyVC

Podcasts

picture

Partner Content

TechCrunch Brand Studio

Crunchboard

Contact Us

The U.S. governance has accused Connor Moucka and John Binns of being the hacker who broke into the system of AT&T , steal around 50 billion client call and text record .

In July , AT&T said hackers stole the phone record of “ nearly all ” of its cellular and landline customers , as well as birdsong and text message records — such as who contacted whom by headphone or text — but not the content of the message . At the time , AT&T enounce it would notify around 110 million AT&T customers of the severance and that the phonograph record were stolen from its systems host on Snowflake , a supplier of cloud services for data point analysis .

Until the Department of Justice ’s indictment against the two hackers , which was file on Sunday , the full act of stolen AT&T customer records was nameless .

The document does not mention AT&T. or else , it cite “ Victim-2 , ” describing it as “ a major telecommunications company located in the United States , ” which was breached around April 14 . When AT&T previously confirm it was breach , it aver the company learned of the jade on April 19 . This stand for that both the verbal description of what sort of company Victim-2 is , and the dates of its breach , align with what AT&T had publicly disclosed , making it almost sure that Victim-2 is indeed AT&T.

AT&T   did not respond to a postulation for input .

DOJ spokesperson Emily Langlie declined to comment .

Overall , according to the bill of indictment , Moucka and Binns access “ billions of sensitive customer records ” and were successful in extorting at least three victim of at least 36 bitcoin ( around $ 2.5 million when the victims paid ) over the span of almost a class , from around November 2023 to October 10 of this class .

Join us at TechCrunch Sessions: AI

Exhibit at TechCrunch Sessions: AI

Prosecutors say Moucka , who lived in Canada , is also bonk online as “ judische , ” “ catist , ” “ waif , ” and “ cllyels , ” and Binns , who lived in Turkey , was know as “ irdev”and “ j_irdev1337.”Moucka was arrested in Canada last calendar week . Binns was antecedently nail in Turkey , agree to 404 medium .

In August , Binnstook credit for the AT&T breachwith The Wall Street Journal . Moucka , through his moniker “ Judische,”told 404 Mediathat he thought he ’d be arrested soon .

AT&T is just one of several dupe who had sensitive data slip from their Snowflake instances . Over the last calendar month , cyberpunk also broke intoSantander Bank , Ticketmaster , andaround 165 other incarnate customer . All these companionship expend Snowflake .

prosecuting attorney allege that by breaking into the dupe companies ’ snow bunting case , the cyberpunk stole troves of raw personal and embodied data point , including societal security numeral , driver ’s permission number , passport telephone number , and banking information , which makes these Snowflake - related breaches some ofthe worst cyberattacks of the year . In some cases , the hackers also postulate victims for a ransom money by threatening them with leak the steal entropy , threats that they followed up on at fourth dimension .

Wired antecedently reportedthat AT&T paid a hack $ 370,000 in an effort to get them to delete the stolen disc . Prosecutors aver in the indictment that Victim-2 paid a ransom to the hacker .

This story has been updated to include DOJ ’s no gossip .