3 arrested in business phishing scam that netted 15 million cred

3 arrested in business phishing scam that netted 15 million credit card numbers, FBI says

The indictments were the result of an investigation conducted by the Seattle Cyber Task Force of the FBI and the U.S. Attorney’s Office for the Western District of Washington. (Source: AP Photo/Jose Luis Magana) The indictments were the result of an investigation conducted by the Seattle Cyber Task Force of the FBI and the U.S. Attorney’s Office for the Western District of Washington. (Source: AP Photo/Jose Luis Magana)

(RNN) - Three people have been arrested in what the FBI described as a "transnational organized crime syndicate" that targeted hundreds of businesses that snagged credit card numbers.

The scheme cost tens of millions of dollars.

Through malware unleashed by a targeted phishing attack, a group known as FIN7 compromised 3,600 business locations across the country, all done remotely over the internet, snagging 15 million credit card numbers.

One of the people, Fedir Hladyr, 33, is already in custody. The other two, Dymtro Fedorov, 44, and Andrii Kolpakov, 33,  await extradition from Poland and Spain, respectively. All three are Ukrainian.

“The three Ukrainian nationals indicted today allegedly were part of a prolific hacking group that targeted American companies and citizens by stealing valuable consumer data, including personal credit card information, that they then sold on the darknet,” said Brian Benczkowski, the assistant attorney general for the Justice Department's Criminal Division.

“The naming of these FIN7 leaders marks a major step towards dismantling this sophisticated criminal enterprise,” said JayTabb, special agent in charge of the FBI's Seattle Field Office. 

The businesses affected include nationally recognized brands such as Chipotle, Arby’s, Sonic, Red Robin and Jason’s Deli.

The FIN7 group was identified as the culprit in a hack of retailers Saks Fifth Avenue and Lord & Taylor in April, as well.

"We are under no illusions that we have taken this group down altogether, but we have made a significant impact," U.S. Attorney Annette Hayes said.

Hladyr, who is in custody in Seattle, allegedly was a systems administrator for the group. His trial is scheduled for Oct. 22, and his attorney told the Associated Press it was too soon to tell if they would consider a plea deal.

Officials said Fedorov and Kolpakov oversaw hackers in the operation. They allege that the group operated under a front company called Combi Security to "provide a guise of legitimacy and to recruit hackers to join the criminal enterprise."

"FIN7, through its dozens of members, launched numerous waves of malicious cyberattacks on numerous businesses operating in the United States and abroad," the Justice Department said in a release. "FIN7 carefully crafted email messages that would appear legitimate to a business’ employee, and accompanied emails with telephone calls intended to further legitimize the email. Once an attached file was opened and activated, FIN7 would use an adapted version of the notorious Carbanak malware in addition to an arsenal of other tools to ultimately access and steal payment card data for the business’ customers."

A report last year from cyber security firm Morphisec described FIN7 as "one of the leading threat actor groups operating today."

"Cyber criminals who believe that they can hide in faraway countries and operate from behind keyboards without getting caught are just plain wrong," Hayes said.

Copyright 2018 Raycom News Network. All rights reserved.

  • Science & technology newsMore>>

  • Microsoft uncovers more Russian attacks ahead of midterms

    Microsoft uncovers more Russian attacks ahead of midterms

    Tuesday, August 21 2018 12:25 AM EDT2018-08-21 04:25:35 GMT
    Tuesday, August 21 2018 10:29 AM EDT2018-08-21 14:29:46 GMT
    (AP Photo/Altaf Qadri, File). FILE - In this Nov. 7, 2017, file photo, a man is silhouetted as he walks in front of Microsoft logo at an event in New Delhi, India. Microsoft says it’s uncovered new Russian hacking attempts targeting U.S. political grou...(AP Photo/Altaf Qadri, File). FILE - In this Nov. 7, 2017, file photo, a man is silhouetted as he walks in front of Microsoft logo at an event in New Delhi, India. Microsoft says it’s uncovered new Russian hacking attempts targeting U.S. political grou...

    The hacking attempts mirror similar Russian attacks ahead of the 2016 election, which U.S. intelligence officials have said were focused on helping to elect Republican Donald Trump to the presidency by hurting his Democratic opponent, Hillary Clinton.

    More >>

    The hacking attempts mirror similar Russian attacks ahead of the 2016 election, which U.S. intelligence officials have said were focused on helping to elect Republican Donald Trump to the presidency by hurting his Democratic opponent, Hillary Clinton.

    More >>
  • Trump sends mean tweets, first lady talks positivity online

    Trump sends mean tweets, first lady talks positivity online

    Monday, August 20 2018 10:18 AM EDT2018-08-20 14:18:39 GMT
    Tuesday, August 21 2018 10:14 AM EDT2018-08-21 14:14:23 GMT
    (AP Photo/Pablo Martinez Monsivais). First lady Melania Trump speaks as she attends the 6th Federal Partners in Bullying Prevention (FPBP) Summit at Health and Human Service in Rockville, Md., Monday, Aug. 20, 2018.(AP Photo/Pablo Martinez Monsivais). First lady Melania Trump speaks as she attends the 6th Federal Partners in Bullying Prevention (FPBP) Summit at Health and Human Service in Rockville, Md., Monday, Aug. 20, 2018.
    Melania Trump is encouraging technology and social media companies to provide more opportunities for children to share ideas on how to be good citizens online.More >>
    Melania Trump is encouraging technology and social media companies to provide more opportunities for children to share ideas on how to be good citizens online.More >>
  • Privacy group tells FTC Google tracking violated 2011 order

    Privacy group tells FTC Google tracking violated 2011 order

    Friday, August 17 2018 4:43 PM EDT2018-08-17 20:43:22 GMT
    Tuesday, August 21 2018 10:14 AM EDT2018-08-21 14:14:16 GMT
    A privacy group that lobbied the Federal Trade Commission to take action on Google nearly a decade ago says in a letter to the FTC that Google has violated the terms of a 2011 settlement because of practices...More >>
    A privacy group that lobbied the Federal Trade Commission to take action on Google nearly a decade ago says in a letter to the FTC that Google has violated the terms of a 2011 settlement because of practices exposed in an Associated Press report this week.More >>
Powered by Frankly
All content © Copyright 2000 - 2018 Raycom Media. All Rights Reserved.
For more information on this site, please read our Privacy Policy, and Terms of Service, and Ad Choices.