Tuesday, June 18, 2024

Three Members of Fin7 Hacker Group Charged With Stealing 15 Million Payment Cards

The US Department of Justice charges three members from the infamous FIN7 hacker group, also referred as Carbanak Group. The Carbank hacker group is active since 2013 have attempted attacks against various banks, financial institutions, the e-payment gateway with their well-designed malware dubbed Cobalt.

The three accused are Ukrainian nationals Dmytro Fedorov, 44, Fedir Hladyr, 33, and Andrii Kolpakov, 30. FIN7 members engaged in a highly sophisticated malware campaign targeting more than 100 U.S. companies, predominantly in the restaurant, gaming, and hospitality industries. reads DOJ Statement.

Also, the group targeted hacked into thousand’s of computers and stolen millions of payment card and sold them in dark web. FIN7 hacker group launched numerous waves of cyber attacks on businesses in the US and across the world.

With all of their attack, they use to send carefully crafted spear-phishing emails with malicious attachments to gain access to the victim’s systems, once the hacker group gained access they steal payment card details.

Within united states itself, the group breached computer networks on companies in 47 states, 15 million payment card details from over 6,500 PoS terminals at 3,600 separate business locations.

Fin7 Hacker Group

All the three arrested FIN7 members charged with 26 felony counts for wire fraud, computer hacking, access device fraud, and aggravated identity theft.

Fedir Hladyr served as systems administrator who maintains their server and the communication channels. He was arrested in Germany.

Fedorov a highly skilled hacker who supervised the hacking activity of the victims’ computer systems. he was arrested in Poland. Kolpakov was also a supervisor, he was arrested in Spain.

The FIN7 hacking group hides their activities by running a security company “Combi Security” and they recruit hackers to join the criminal enterprise.

“The naming of these FIN7 leaders marks a major step towards dismantling this sophisticated criminal enterprise,” said Special Agent in Charge Tabb.

Also Read

Russian APT28 Hacking Group Tracked Using a Variant X-Agent Delivering Via JPG File

Hacking Group “RANCOR” Identified Using Malware Families LAINTEE and DDKONG

Chinese Hacking group ‘Thrip’ Targets Satellite communications, Telecoms, and Defense Companies

Website

Latest articles

Singapore Police Arrested Two Individuals Involved in Hacking Android Devices

The Singapore Police Force (SPF) has arrested two men, aged 26 and 47, for...

CISA Conducts First-Ever Tabletop Exercise Focused on AI Cyber Incident Response

On June 13, 2024, the Cybersecurity and Infrastructure Security Agency (CISA) made history by...

Europol Taken Down 13 Websites Linked to Terrorist Operations

Europol and law enforcement agencies from ten countries have taken down 13 websites linked...

New ARM ‘TIKTAG’ Attack Impacts Google Chrome, Linux Systems

Memory corruption lets attackers hijack control flow, execute code, elevate privileges, and leak data.ARM's...

Operation Celestial Force Employing Android And Windows Malware To Attack Indian Users

A Pakistani threat actor group, Cosmic Leopard, has been conducting a multi-year cyber espionage...

Hunt3r Kill3rs Group claims they Infiltrated Schneider Electric Systems in Germany

The notorious cybercriminal group Hunt3r Kill3rs has claimed responsibility for infiltrating Schneider Electric's systems...

Hackers Employing New Techniques To Attack Docker API

Attackers behind Spinning YARN launched a new cryptojacking campaign targeting publicly exposed Docker Engine...
Guru baran
Guru baranhttps://gbhackers.com
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Free Webinar

API Vulnerability Scanning

71% of the internet traffic comes from APIs so APIs have become soft targets for hackers.Securing APIs is a simple workflow provided you find API specific vulnerabilities and protect them.In the upcoming webinar, join Vivek Gopalan, VP of Products at Indusface as he takes you through the fundamentals of API vulnerability scanning..
Key takeaways include:

  • Scan API endpoints for OWASP API Top 10 vulnerabilities
  • Perform API penetration testing for business logic vulnerabilities
  • Prioritize the most critical vulnerabilities with AcuRisQ
  • Workflow automation for this entire process

Related Articles