Hacker in Heartland data breach a 'fall guy' for Russians?
Monday, August 24, 2009
IT security experts are suggesting that 28-year-old Albert Gonzales, who was indicted last week for involvement in the massive data breach of Heartland Payment Systems, may just be a fall guy for more expert hackers who have escaped justice in Russia.
Gonzales was charged last Monday with conspiracy and wire fraud for involvement along with two unnamed Russian co-conspirators hacking the network firewalls of Heartland Payment Systems, along with retail chains 7-Eleven and Hannaford Brothers.
Gonzales was already in custody and facing trial in two other hacking cases for data theft from TJX and another retailer.
But security experts say Gonzales may have just been "the tip of the iceberg" and not the real mastermind behind the attacks, who are likely connected to criminal gangs in Russia and elsewhere in Eastern Europe.
Writing at the Trend Micro malware blog, security researcher Paul Ferguson said there is "an entire Eastern European organized criminal operation that is further along in this food chain."
Richard Koman, writing for ZDNet, said Gonzales may have been "a low-level purveyor of data" who was used by the Russians for "scope-out work" to locate the vulnerabilities exploited by the other hackers.

Related News:
Don't worry about network security: Nine-year-old Marko's got your back - 1.22.2010 Marko Calasan is a Macedonian IT whiz and systems administrator who remotely manages a network of computers owned by a nonprofit that helps connect people with disabilities. Not much of a story, except for the consideration of Calasan's age: He's nine years old.
Apple releases patches for OS X security flaws - 1.21.2010 Vulnerabilities in OS X 10.5 and 10.6 were addressed in Apple's first security update of 2010, patching a dozen known security holes in the Mac operating system.
British university slammed by unknown virus - 1.21.2010 Network security at the UK's University of Exeter was breached by an unidentified virus on Monday, taking down the entirety of the institution's computer capacity and, local paper the Express and Echo reports, even spreading to the school's telephone network.
Pioneering CEO of Real Networks steps down - and some say 'good riddance' - 1.19.2010 Rob Glaser, the controversial head of Real Networks, stepped down from his position last week amid comment from all corners of the tech world, but critics say that not enough accounts mention Glaser's record of spreading intrusive software.
Gmail improves network security for clients - 1.14.2010 Secure HTTP access to Google's free Gmail service is now active by default, the company announced earlier this week, making Gmail messages less susceptible to unauthorized access.
|