Connect with us

Hi, what are you looking for?

Crime

Newly unsealed indictment accuses 3 Iranian nationals of ransomware attacks against hundreds of U.S. victims


An indictment was unsealed today charging three Iranian nationals with allegedly orchestrating a scheme to hack into the computer networks of multiple U.S. victims.

As alleged in the indictment, from October 2020 through the present, Mansour Ahmadi, aka Mansur Ahmadi, 34; Ahmad Khatibi Aghda, aka Ahmad Khatibi, 45; and Amir Hossein Nickaein Ravari, aka Amir Hossein Nikaeen, aka Amir Hossein Nickaein, aka Amir Nikayin, 30, engaged in a scheme to gain unauthorized access to the computer systems of hundreds of victims in the United States, the United Kingdom, Israel, Iran, and elsewhere, causing damage and losses to the victims.

“The Government of Iran has created a safe haven where cyber criminals acting for personal gain flourish and defendants like these are able to hack and extort victims, including critical infrastructure providers,” said Assistant Attorney General Matthew G. Olsen of the Justice Department’s National Security Division. “This indictment makes clear that even other Iranians are less safe because their own government fails to follow international norms and stop Iranian cyber criminals.”

The defendants’ hacking campaign exploited known vulnerabilities in commonly used network devices and software applications to gain access and exfiltrate data and information from victims’ computer systems. Ahmadi, Khatibi, Nickaein and others also conducted encryption attacks against victims’ computer systems, denying victims access to their systems and data unless a ransom payment was made.

The defendants victimized a broad range of organizations, including small businesses, government agencies, nonprofit programs and educational and religious institutions. Their victims also included multiple critical infrastructure sectors, including health care centers, transportation services and utility providers.

“Ransom-related cyberattacks — like what happened here — are a particularly destructive form of cybercrime,” said U.S. Attorney Philip R. Sellinger for the District of New Jersey. “No form of cyberattack is acceptable, but ransomware attacks that target critical infrastructure services, such as health care facilities and government agencies, are a threat to our national security. Hackers like these defendants go to great lengths to keep their identities secret, but there is always a digital trail. And we will find it.”

Advertisement. Scroll to continue reading.

“The FBI remains steadfast in our commitment to work with our U.S. government partners for the purpose of imposing cost on our adversaries,” said Assistant Director Bryan Vorndran of the FBI’s Cyber Division. “This indictment, when coupled with other disruptive operational activities, demonstrates what’s possible when we team up with our domestic and international partners and take a whole-of-government approach. We, along with our partners, remain dedicated to protecting the United States of America and the victims affected by these egregious crimes.”

Advertisement

According to court documents, in February 2021, the defendants and their conspirators targeted a township in Union County, New Jersey. They exploited known vulnerabilities to gain control and access to the township’s network and data and used a hacking tool to establish persistent remote access to a particular domain that was registered to Ahmadi.

In or before February 2022, the defendants and their conspirators targeted an accounting firm based in Morris County, New Jersey. They again exploited a known vulnerability to gain unauthorized access and then used a particular hacking tool to establish a connection to a server that was registered to Nickaein and to steal data. In March 2022, the defendants launched an encryption attack against the accounting firm; after denying the firm access to some of its systems, Khatibi demanded payment of $50,000 in cryptocurrency and threatened to sell the data on the black market.

The defendants also compromised, and often encrypted and extorted, hundreds of other victims, including an accounting firm based in Illinois; a regional electric utility company based in Mississippi; a regional electric utility company based in Indiana; a public housing corporation in the State of Washington; a shelter for victims of domestic violence in Pennsylvania; a County government in Wyoming; a construction company located in the State of Washington that was engaged in work on critical infrastructure projects; and a state bar association.

Ahmadi, Khatibi and Nickaein, all residents of Iran, are each charged by indictment with one count of conspiring to commit computer fraud and related activity in connection with computers; one count of intentionally damaging a protected computer; and one count of transmitting a demand in relation to damaging a protected computer. Ahmadi is charged with one additional count of intentionally damaging a protected computer. All defendants remain at large abroad.

The conspiracy charge carries a maximum sentence of five years in prison. The intentional damage to protected computers charge carries a maximum sentence of 10 years in prison. The transmission of a ransom demand charge carries a maximum sentence of five years in prison. The offenses also carry a potential maximum fine of $250,000 or twice the gross amount of gain or loss resulting from the offense, whichever is greatest.


DOJ

Facebook Comments

Advertisement. Scroll to continue reading.




News by Breaking911

Loading

Advertisement
Click to comment
Advertisement
Advertisement

You May Also Like

Crime

Law&Crime NetworkMon, January 1, 2024 10:30pmURL:Embed: In 2024, “Doomsday cult” prophet Chad Daybell is scheduled to go to trial — Idaho Murders suspect Bryan...

Crime

WASHINGTON (FTC / News Release) – The Federal Trade Commission and 17 state attorneys general today sued Amazon.com, Inc. alleging that the online retail...

Crime

PHOTO CREDIT: JABIN BOTSFORD/THE WASHINGTON POST/GETTY IMAGES Donald Trump’s legal team is attempting to have the federal election subversion case in...

Crime

Department of Defense / News Release: Today, the Department of Defense (DoD) announced a new security assistance package to support Ukraine’s...

Crime

President Biden Holds a Joint Press Conference with Prime Minister Anthony Albanese of Australia Facebook Comments Advertisement. Scroll to continue...

Crime

MORGANTOWN, WEST VIRGINIA – A search warrant executed last week in Morgantown led to the recovery of a large batch of “Rainbow Fentanyl,” a...

Crime

Navarrete could face a mandatory minimum sentence of 49 years in prison if convicted of all charges, according to prosecutors An Arizona state senator...

Crime

Law&Crime NetworkFri, September 8, 2023 10:30pmURL:Embed: YouTube mom Ruby Franke and her business partner, Jodi Hildebrandt, were arrested last week after Franke’s 12-year-old son...

Covid-19

 Corrine Lund is a nurse who has absolutely had enough of the lies. Lund came forward on “The Stew Peters Show” to reveal what...

Crime

President Biden Delivers Remarks on Maui and Hurricane Idalia Response Facebook Comments Advertisement. Scroll to continue reading. Previous...

Missing

The massive search for Gabby Petito after the Florida woman vanished in September and was later found dead in a Wyoming national park has...

Crime

AFP via Getty Images WASHINGTON – During a Wednesday press conference, a cheat sheet used by President Joe Biden was revealed,...

Advertisement