Attacks/Breaches

8/14/2018
11:00 AM
50%
50%

Washington Man Sentenced in Ransomware Conspiracy

A guilty plea brings 18-month sentence on money laundering charges for former Microsoft employee.

A federal judge has sentenced a Maple Valley, Wash. man to 18 months in prison for his role in a scheme based on Reveton ransomware. Raymond Odigie Uadiale, 41, a former employee of Microsoft, was sentenced following his June 4 guilty plea.

Reveton displayed a splash screen with the logo of a law enforcement organization. The screen included a message alerting the victim that the law enforcement organization had found illegal material on the infected computer and required the payment of a "fine" to regain access to the computer and its data.

The victim was instructed to purchase a GreenDot MoneyPak and enter the account number into a form on the splash screen. Using the information from these cards, Uadiale transformed the MoneyPak funds into cash, kept a portion for himself, and sent a portion back to Reveton’s distributor in the United Kingdom.

Indicted on one count of conspiracy to commit money laundering and one count of substantive money laundering, Uadiale pled guilty to the conspiracy charge while the government dismissed the substantive count. In addition to his prison sentence, Uadiale was sentenced to three years of supervised release. 

According to court documents, while a graduate student at Florida International University, Uadiale used Liberty Reserve (a digital currency platform) to transfer approximately $93,640 in Liberty Reserve dollars to his co-conspirator as part of the scheme.

For more, read here.

Learn from the industry's most knowledgeable CISOs and IT security experts in a setting that is conducive to interaction and conversation. Early bird rate ends August 31. Click for more info

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: "Now, we come here to play Paw-ke Man Go!"
Current Issue
The Year in Security 2018
This Dark Reading Tech Digest explores the biggest news stories of 2018 that shaped the cybersecurity landscape.
Flash Poll
How Enterprises Are Attacking the Cybersecurity Problem
How Enterprises Are Attacking the Cybersecurity Problem
Data breach fears and the need to comply with regulations such as GDPR are two major drivers increased spending on security products and technologies. But other factors are contributing to the trend as well. Find out more about how enterprises are attacking the cybersecurity problem by reading our report today.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-6497
PUBLISHED: 2019-01-20
Hotels_Server through 2018-11-05 has SQL Injection via the controller/fetchpwd.php username parameter.
CVE-2018-18908
PUBLISHED: 2019-01-20
The Sky Go Desktop application 1.0.19-1 through 1.0.23-1 for Windows performs several requests over cleartext HTTP. This makes the data submitted in these requests prone to Man in The Middle (MiTM) attacks, whereby an attacker would be able to obtain the data sent in these requests. Some of the requ...
CVE-2019-6496
PUBLISHED: 2019-01-20
The ThreadX-based firmware on Marvell Avastar Wi-Fi devices allows remote attackers to execute arbitrary code or cause a denial of service (block pool overflow) via malformed Wi-Fi packets during identification of available Wi-Fi networks. Exploitation of the Wi-Fi device can lead to exploitation of...
CVE-2019-3773
PUBLISHED: 2019-01-18
Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three projects, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.
CVE-2019-3774
PUBLISHED: 2019-01-18
Spring Batch versions 3.0.9, 4.0.1, 4.1.0, and older unsupported versions, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources.