article thumbnail

Tech CEO Sentenced to 5 Years in IP Address Scheme

Krebs on Security

As a result, the government was able to charge Golestan with 20 counts of wire fraud — one for each payment made by the phony companies that bought the IP addresses from ARIN. Golestan initially sought to fight those charges. Prosecutors estimated those addresses were valued at between $10 million and $14 million.

Internet 308
article thumbnail

A Deep Dive Into the Residential Proxy Service ‘911’

Krebs on Security

911 says its network is made up entirely of users who voluntarily install its “free VPN” software. In this scenario, users indeed get to use a free VPN service, but they are often unaware that doing so will turn their computer into a proxy that lets others use their Internet address to transact online. “The 911[.]re

VPN 313
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Who and What is Behind the Malware Proxy Service SocksEscort?

Krebs on Security

In a report released July 12, researchers at Lumen’s Black Lotus Labs called the AVrecon botnet “one of the largest botnets targeting small-office/home-office (SOHO) routers seen in recent history,” and a crime machine that has largely evaded public attention since first being spotted in mid-2021. com, sscompany[.]net,

Malware 211
article thumbnail

When Low-Tech Hacks Cause High-Impact Breaches

Krebs on Security

We don’t know much about the source of the November 2021 incident, other than GoDaddy’s statement that it involved a compromised password, and that it took about two months for the company to detect the intrusion. What else do we know about the cause of these incidents?

Hacking 278
article thumbnail

Interview With a Crypto Scam Investment Spammer

Krebs on Security

Very often, this proxy software is installed surreptitiously, such as through a “Free VPN” service or mobile app. According to the FBI , financial losses from cryptocurrency investment scams dwarfed losses for all other types of cybercrime in 2022 , rising from $907 million in 2021 to $2.57 billion last year.

Scams 252
article thumbnail

Experian, You Have Some Explaining to Do

Krebs on Security

“Experian now sometimes does require MFA for me now if I use a new browser or have my VPN on,” Rishi said, but he’s not sure if Experian’s free service would have operated differently. “We believe these are isolated incidents of fraud using stolen consumer information,” Experian’s statement reads.

article thumbnail

Hackers Gaining Power of Subpoena Via Fake “Emergency Data Requests”

Krebs on Security

” On April 5, 2021, Everlynn posted a new sales thread to the cybercrime forum cracked[.]to This is very illegal and you will get raided if you don’t use a vpn. The phony message sent in November 2021 via the FBI’s email system. In July 2021, a bipartisan group of U.S.