{"id":22638,"date":"2022-06-30T10:25:12","date_gmt":"2022-06-30T14:25:12","guid":{"rendered":"http:\/\/worldjusticenews.com\/news\/?p=22638"},"modified":"2022-06-30T10:25:12","modified_gmt":"2022-06-30T14:25:12","slug":"canadian-admits-to-hacking-spree-with-russian-cyber-gang","status":"publish","type":"post","link":"https:\/\/worldjusticenews.com\/news\/2022\/06\/30\/canadian-admits-to-hacking-spree-with-russian-cyber-gang\/","title":{"rendered":"Canadian admits to hacking spree with Russian cyber-gang"},"content":{"rendered":"<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\"><b class=\"ssrcss-hmf8ql-BoldText e5tfeyi3\">An ex-Canadian government IT worker has admitted to being a high-level hacker with a Russian cyber-crime group.<\/b><\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">Sebastien Vachon-Desjardins, from Quebec, Canada, has agreed to plead guilty in a Florida court.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">The 34-year-old was affiliated to the NetWalker ransomware crew, which has attacked companies, municipalities, hospitals, schools and universities.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">When he was arrested, police discovered he was in possession of $27m (\u00a322.2m) in Bitcoin.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">The case represents a rare example of a successful arrest and prosecution of a hacker working for a Russia-based cyber-crime group.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">US court documents state that the Canadian was one of NetWalker&#8217;s most prolific affiliates.<\/p>\n<\/div>\n<\/div>\n<div id=\"piano-inline1\"><\/div>\n<div class=\"ssrcss-18mjolk-ComponentWrapper e1xue1i810\" data-component=\"image-block\">\n<figure class=\"ssrcss-wpgbih-StyledFigure e34k3c23\">\n<div class=\"ssrcss-ab5fd8-StyledFigureContainer e34k3c21\"><span class=\"ssrcss-1hq4gmv-Placeholder e16icw910\"><img loading=\"lazy\" decoding=\"async\" class=\"ssrcss-evoj7m-Image ee0ct7c0\" src=\"https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg\" srcset=\"https:\/\/ichef.bbci.co.uk\/news\/240\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg 240w, https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg 320w, https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg 480w, https:\/\/ichef.bbci.co.uk\/news\/624\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg 624w, https:\/\/ichef.bbci.co.uk\/news\/800\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg 800w, https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/C088\/production\/_125688294_c38ee015-a92f-49f9-8361-8daa3ab3e050.jpg 976w\" alt=\"police cash\" width=\"976\" height=\"549\" \/><\/span><\/div><figcaption class=\"ssrcss-3d4gra-StyledFigureCaption e34k3c22\">\n<div class=\"ssrcss-y7krbn-Stack e1y4nx260\">Nearly 800,000 Canadian dollars in cash was found in Sebastien Vachon-Desjardins&#8217; apartment<br \/>\n(Image: RCMP)<\/div>\n<\/figcaption><\/figure>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p>&nbsp;<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">Evidence gathered by police shows he went on a hacking spree between April and December 2020, attacking 17 Canadian companies and many others around the world.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">NetWalker operated a ransomware-as-a-service criminal business, offering its malicious software and extortion website to hacker affiliates.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">The leaders, who are still at large, communicate in Russian online and ensure that their malware does not infect Russian computer systems, or those of former Soviet countries which are now members of the Commonwealth of Independent States.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">Affiliates like Mr Vachon-Desjardins are responsible for identifying and attacking high-value victims with the ransomware.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">NetWalker developers and affiliates split the ransom or, if the victim refuses to pay, a share of the money made from selling the stolen data.<\/p>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">Mr Vachon-Desjardins was arrested in Canada in January 2021 and subsequently extradited following a US investigation into the cyber-crime group, which dismantled its online operation and uncovered a database of affiliate details.<\/p>\n<\/div>\n<\/div>\n<div id=\"piano-inline2\">It revealed the NetWalker group had roughly 100 members, including affiliates, who extorted at least $40m from victims.<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">In one incident,\u00a0<a class=\"ssrcss-k17ofw-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/technology-53214783\" target=\"_blank\" rel=\"noopener\">the group extorted $1.14m from a US university<\/a>\u00a0trying to develop a Covid-19 vaccine.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-18mjolk-ComponentWrapper e1xue1i810\" data-component=\"image-block\">\n<figure class=\"ssrcss-wpgbih-StyledFigure e34k3c23\">\n<div class=\"ssrcss-ab5fd8-StyledFigureContainer e34k3c21\"><span class=\"ssrcss-1hq4gmv-Placeholder e16icw910\"><img loading=\"lazy\" decoding=\"async\" class=\"ssrcss-evoj7m-Image ee0ct7c0\" src=\"https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg\" srcset=\"https:\/\/ichef.bbci.co.uk\/news\/240\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg 240w, https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg 320w, https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg 480w, https:\/\/ichef.bbci.co.uk\/news\/624\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg 624w, https:\/\/ichef.bbci.co.uk\/news\/800\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg 800w, https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/4E14\/production\/_125688991_66e4198c-921b-4951-b855-2e37390e5552.jpg 976w\" alt=\"Mr Vachon-Desjardins topless\" width=\"976\" height=\"549\" \/><\/span><\/div><figcaption class=\"ssrcss-3d4gra-StyledFigureCaption e34k3c22\">\n<div class=\"ssrcss-y7krbn-Stack e1y4nx260\">Mr Vachon-Desjardins could face 10 years in prison<\/div>\n<\/figcaption><\/figure>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p>&nbsp;<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">A NetWalker attack on the D\u00fcsseldorf University Clinic in September 2020 is also believed to have contributed to\u00a0<a class=\"ssrcss-k17ofw-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/technology-54204356\" target=\"_blank\" rel=\"noopener\">the death of a patient<\/a>\u00a0who had to be relocated to another hospital for treatment.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">In each incident the victims would find a note on their computers reading: &#8220;Hi! Your files are encrypted by NetWalker.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">&#8220;Our encryption algorithms are very strong and your files are very well protected, the only way to get your files back is to co-operate with us and get the decrypter program. For us this is just business.&#8221;<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-18mjolk-ComponentWrapper e1xue1i810\" data-component=\"image-block\">\n<figure class=\"ssrcss-wpgbih-StyledFigure e34k3c23\">\n<div class=\"ssrcss-ab5fd8-StyledFigureContainer e34k3c21\"><span class=\"ssrcss-1hq4gmv-Placeholder e16icw910\"><img loading=\"lazy\" decoding=\"async\" class=\"ssrcss-evoj7m-Image ee0ct7c0\" src=\"https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg\" srcset=\"https:\/\/ichef.bbci.co.uk\/news\/240\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg 240w, https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg 320w, https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg 480w, https:\/\/ichef.bbci.co.uk\/news\/624\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg 624w, https:\/\/ichef.bbci.co.uk\/news\/800\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg 800w, https:\/\/ichef.bbci.co.uk\/news\/976\/cpsprodpb\/10EA8\/production\/_125688296_6a89a1f4-b609-4be1-9b8b-e1a805cdc395.jpg 976w\" alt=\"Computers on a desk\" width=\"976\" height=\"549\" \/><\/span><\/div><figcaption class=\"ssrcss-3d4gra-StyledFigureCaption e34k3c22\">\n<div class=\"ssrcss-y7krbn-Stack e1y4nx260\">Mr Vachon-Desjardins admits carrying out multiple ransomware attacks from his apartment in Canada (Image: RCMP)<\/div>\n<\/figcaption><\/figure>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p>&nbsp;<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">Police seized dozens of computers and storage devices, 719 Bitcoin worth approximately C$35m ($27m, \u00a322m) and C$790,000 in cash from Mr Vachon-Desjardins&#8217; house.<\/p>\n<\/div>\n<\/div>\n<div id=\"piano-inline3\">The hacker is a former IT consultant for Canada&#8217;s public works and government services department.<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"unordered-list-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<div class=\"ssrcss-1o5f7ft-BulletListContainer e5tfeyi0\">\n<ul role=\"list\">\n<li><a class=\"ssrcss-k17ofw-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/technology-53214783\" target=\"_blank\" rel=\"noopener\">How NetWalker hackers extorted $1.14m from a US university<\/a><\/li>\n<li><a class=\"ssrcss-k17ofw-InlineLink e1no5rhv0\" href=\"https:\/\/www.bbc.co.uk\/news\/technology-61323402\" target=\"_blank\" rel=\"noopener\">Costa Rica says it is at war with Conti hackers<\/a><\/li>\n<\/ul>\n<\/div>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">On his LinkedIn profile, he says he worked for various government departments from 2010 onwards, and cites expertise in responding to cyber-security incidents.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">He is pleading guilty to one count of conspiring to commit computer fraud, and one count of transmitting a demand in relation to damaging a protected computer.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">The court has agreed not to proceed with two other charges.<\/p>\n<\/div>\n<\/div>\n<div class=\"ssrcss-uf6wea-RichTextComponentWrapper e1xue1i86\" data-component=\"text-block\">\n<div class=\"ssrcss-7uxr49-RichTextContainer e5tfeyi1\">\n<p class=\"ssrcss-1q0x1qg-Paragraph eq5iqo00\">He will be sentenced at a later date, and could face 10 years in prison.<\/p>\n<p>Source: <a href=\"https:\/\/www.bbc.com\/news\/technology-61981923\" target=\"_blank\" rel=\"noopener\">bbc.co.uk<\/a><\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<div class=\"mh-excerpt\">An ex-Canadian government IT worker has admitted to being a high-level hacker with a Russian cyber-crime group. Sebastien Vachon-Desjardins, from Quebec, Canada, has agreed to plead guilty in a Florida court. The 34-year-old was affiliated <a class=\"mh-excerpt-more\" href=\"https:\/\/worldjusticenews.com\/news\/2022\/06\/30\/canadian-admits-to-hacking-spree-with-russian-cyber-gang\/\" title=\"Canadian admits to hacking spree with Russian cyber-gang\">[&#8230;]<\/a><\/div>\n","protected":false},"author":1,"featured_media":22639,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"pmpro_default_level":"","footnotes":""},"categories":[5,109,2,3],"tags":[45,4835,417,8617,2695,6270,442],"class_list":{"0":"post-22638","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-canada","8":"category-headline","9":"category-news","10":"category-usa","11":"tag-canada","12":"tag-cyber-crime","13":"tag-florida","14":"tag-netwalker","15":"tag-quebec","16":"tag-ransomware","17":"tag-russia","18":"pmpro-has-access"},"_links":{"self":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts\/22638","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/comments?post=22638"}],"version-history":[{"count":2,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts\/22638\/revisions"}],"predecessor-version":[{"id":22641,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/posts\/22638\/revisions\/22641"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/media\/22639"}],"wp:attachment":[{"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/media?parent=22638"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/categories?post=22638"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/worldjusticenews.com\/news\/wp-json\/wp\/v2\/tags?post=22638"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}