E-Root Admin Sentenced to 42 Months in Prison for Selling 350,000 Credentials

Tampa, FL – In a significant crackdown on cybercrime, Sandu Boris Diaconu, a 31-year-old Moldovan national, has been sentenced to 42 months in federal prison after pleading guilty to charges related to operating a network of illicit websites. U.S.

Senior District Judge James Moody, Jr. handed down the sentence following Diaconu’s admission of guilt on December 1, 2023, for his involvement in a sophisticated digital fraud operation.

The E-Root Marketplace, as the network was known, became infamous for selling compromised computer credentials, allowing buyers to gain unauthorized access to computers and servers worldwide, including systems owned by individuals and companies within the United States.

The marketplace was designed to be a covert operation, employing a distributed network structure to conceal the identities of its administrators, buyers, and sellers.

Document

Free Webinar : Mitigating Vulnerability & 0-day Threats

Alert Fatigue that helps no one as security teams need to triage 100s of vulnerabilities. :

  • The problem of vulnerability fatigue today
  • Difference between CVSS-specific vulnerability vs risk-based vulnerability
  • Evaluating vulnerabilities based on the business impact/risk
  • Automation to reduce alert fatigue and enhance security posture significantly

AcuRisQ, that helps you to quantify risk accurately:

Diaconu’s role in the criminal enterprise included developing, publishing online, and collaborating with accomplices to manage the E-Root Marketplace.

The platform facilitated the sale of access to compromised computers, effectively enabling a range of cybercrimes.

The charges brought against Diaconu included conspiracy to commit access device and computer fraud and possession of 15 or more unauthorized access devices.

His guilty plea and subsequent sentencing mark a victory for U.S. authorities in their ongoing efforts to combat international cybercrime.

The case against Diaconu resulted from a concerted effort by law enforcement agencies to dismantle operations that threatened the digital security of individuals and businesses.

The sentence serves as a reminder of the serious consequences facing those who engage in the illicit trade of stolen digital information and the commitment of the justice system to uphold cybersecurity.

Stay updated on Cybersecurity news, Whitepapers, and Infographics. Follow us on LinkedIn & Twitter.

Balaji

BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Recent Posts

Landmark Admin Suffers Major Breach, Exposing Data of 1.6M+ Users

Landmark Admin, LLC (“Landmark”), a Texas-based third-party administrator for life insurance carriers, has confirmed that…

40 minutes ago

SquareX to Reveal Critical Data Splicing Attack at BSides SF, Exposing Major DLP Vulnerability

SquareX researchers Jeswin Mathai and Audrey Adeline will be disclosing a new class of data exfiltration techniques at BSides San…

41 minutes ago

Firefox Fixes High-Severity Vulnerability Causing Memory Corruption via Race Condition

Mozilla has released Firefox 137.0.2, addressing a high-severity security flaw that could potentially allow attackers…

3 hours ago

Tails 6.14.2 Released with Critical Fixes for Linux Kernel Vulnerabilities

The Tails Project has urgently released Tails 6.14.2, addressing critical security vulnerabilities in the Linux kernel…

4 hours ago

APT29 Hackers Use GRAPELOADER in New Attack Against European Diplomats

Check Point Research (CPR) has uncovered a new targeted phishing campaign employing GRAPELOADER, a sophisticated…

4 hours ago

Chinese Hackers Unleash New BRICKSTORM Malware to Target Windows and Linux Systems

A sophisticated cyber espionage campaign leveraging the newly identified BRICKSTORM malware variants has targeted European…

4 hours ago