Threat Intelligence

6/13/2017
03:00 PM
50%
50%

A Former FBI Most Wanted Cybercriminal is Extradited to US

The Latvian man is charged with four counts of wire fraud and unauthorized computer use in a "scareware" scheme that netted more than $2 million.

Federal authorities extradited a Latvian man from Poland to charge him in a "scareware" and hacking criminal case, which targeted readers of the Minneapolis Star Tribune website, the Department of Justice announced this week.

Peteris Sahurovs, a 28-year-old man who at one time was No. 5 on the FBI's Most Wanted List for cybercriminals, allegedly pilfered more than $2 million from the Minneapolis Star Tribune's readers.

Creating a fake advertising agency, Sahurovs and his cohorts purchased online advertising space from the Minneapolis Star Tribune for a bogus American hotel chain, according to the indictment. After the ad began to run, the group changed the ad's computer code to infect startribune.com visitors with malware.

Once the readers got infected with malware, their computers would "freeze up" and show pop-up warnings that they needed to purchase "antivirus" software to fix the bogus problem. When affected readers purchased the phony antivirus software, the pop-up ads ceased and they could access the data and files on their computers, whereas those that didn't make the purchase lost access to the data.

Read more about the "scareware" scheme here

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
12 Free, Ready-to-Use Security Tools
Steve Zurier, Freelance Writer,  10/12/2018
Most IT Security Pros Want to Change Jobs
Dark Reading Staff 10/12/2018
6 Security Trends for 2018/2019
Curtis Franklin Jr., Senior Editor at Dark Reading,  10/15/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
Flash Poll
The Risk Management Struggle
The Risk Management Struggle
The majority of organizations are struggling to implement a risk-based approach to security even though risk reduction has become the primary metric for measuring the effectiveness of enterprise security strategies. Read the report and get more details today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-13399
PUBLISHED: 2018-10-16
The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escalate privileges because of weak permissions on the installation directory.
CVE-2018-18381
PUBLISHED: 2018-10-16
Z-BlogPHP 1.5.2.1935 (Zero) has a stored XSS Vulnerability in zb_system/function/c_system_admin.php via the Content-Type header during the uploading of image attachments.
CVE-2018-18382
PUBLISHED: 2018-10-16
Advanced HRM 1.6 allows Remote Code Execution via PHP code in a .php file to the user/update-user-avatar URI, which can be accessed through an "Update Profile" "Change Picture" (aka user/edit-profile) action.
CVE-2018-18374
PUBLISHED: 2018-10-16
XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid parameter.
CVE-2018-18375
PUBLISHED: 2018-10-16
goform/getProfileList in Orange AirBox Y858_FL_01.16_04 allows attackers to extract APN data (name, number, username, and password) via the rand parameter.