Roman Seleznev: Difference between revisions
Alex Spade (talk | contribs) m name fix using AWB |
Undid revision 838658723 by Alex Spade (talk) His name is Roman Valeryevich Seleznev in official documents: https://www.justice.gov/opa/pr/russian-cyber-criminal-sentenced-14-years-prison-role-organized-cybercrime-ring-responsible |
||
Line 1: | Line 1: | ||
{{copy edit|date=September 2017}} |
{{copy edit|date=September 2017}} |
||
{{Infobox person |
{{Infobox person |
||
|name = Roman Valerevich |
|name = Roman Valerevich Seleznev |
||
|image = http://rapsinews.com/images/27731/02/277310236.jpg |
|image = http://rapsinews.com/images/27731/02/277310236.jpg |
||
|image_size = |
|image_size = |
||
|caption = |
|caption = |
||
|native_name = Роман Валерьевич |
|native_name = Роман Валерьевич Селезнев |
||
|birth_name = |
|birth_name = |
||
|birth_date = {{birth year and age|1984}} |
|birth_date = {{birth year and age|1984}} |
||
Line 17: | Line 17: | ||
|home_town = Vladivostok, Russia |
|home_town = Vladivostok, Russia |
||
|criminal_charge = Hacking, Wire fraud, Racketeering |
|criminal_charge = Hacking, Wire fraud, Racketeering |
||
|father = Valery |
|father = Valery Seleznev |
||
|ethnicity = |
|ethnicity = |
||
}} |
}} |
||
'''Roman Valerevich Seleznyov''' ( |
'''Roman Valerevich Seleznyov''' ({{lang-ru|Роман Валерьевич Селезнёв}}; born 1984), also known by his hacker [[User (computing)|handle,]] '''Track2''', is a Russian computer [[Hacker (computer security)|hacker]]. He was indicted in [[Washington (state)|Washington]] in 2011, and has been convicted of hacking into servers to steal credit card data. Seleznev's activities have been speculated to have caused damages to banks and credit-card companies ranging in the millions of dollars. Seleznev was arrested on July 5, 2014, and was sentenced to 27 years in prison for counts of wire fraud, intentional damage to a protected computer, and identity theft.<ref name=sentence/> |
||
==Biography== |
==Biography== |
||
Seleznev is the son of {{Interlanguage link multi|Valery Seleznev|ru|3=Селезнёв, Валерий Сергеевич}}, a member of the [[State Duma|Duma]], Russia’s parliament.<ref>{{cite news|last=Wilber|first= Del Quentin|date=7 July 2014|title=Russian Charged by U.S. as Hacker Is Duma Member’s Son|url=https://www.bloomberg.com/news/2014-07-08/russian-charged-by-u-s-as-hacker-is-duma-member-s-son.html|newspaper=[[Bloomberg L.P.]]|accessdate=8 July 2014}}</ref> |
|||
===Initial activity=== |
===Initial activity=== |
||
Seleznev started his activities in earlier 2003, on Carderplanet, providing SSN and criminal history research service for fee, using stolen LexisNexis's accurint.com accounts, among others. Later on, Seleznev's employee created a scanner which allowed the user to scan the internet for [[Remote Desktop Protocol|MSRDP]] open ports (3389 by default). at the time, default configuration provided poor protected and many administrator accounts remained without a password. Exploiting this vulnerability, Seleznev and his partner gained an access to many remote computers, including ones containing financial and credit card data. At this point, Seleznev contacted [[Horohorin Vladislav|BadB]] in order to gain his experience exploiting financial systems. In turn, [[Horohorin Vladislav|BadB]], another notorious cyber criminal identified by [[United States Secret Service Uniformed Division|USSS]] as [[Horohorin Vladislav]] in 2009, provided Seleznev with automated script which looked for traces of credit cards in systems and networks, and thus Seleznev obtained his first credit card dumps which, in turn, he resold to [[Horohorin Vladislav|BadB]]. As the time went on, Seleznev became unsatisfied with BadB services and decided to start his own credit card dumps vending operation under nickname nCuX ("psycho" in Russian). |
|||
In 2008, |
In 2008, Seleznev extended his operations from just scanning [[Remote Desktop Protocol|MSRDP]] with default passwords or no passwords at all to developing sophisticated malware which had the ability to intercept network traffic and search network shares, distributing it through various flaws in internet browsers by injecting malicious code into advertising traffic and thus he infected many computers, mostly in the United States. |
||
In 2009, [[Horohorin Vladislav|BadB]] started the first automated stolen credit card shop. Soon after that, |
In 2009, [[Horohorin Vladislav|BadB]] started the first automated stolen credit card shop. Soon after that, Seleznev announced that he is out of business under nickname nCuX, but immediately created 2 other names track2 and bulba.cc,<ref>{{Cite web|url=http://www.dream-market-url.com/inside-the-investigation-and-trial-of-roman-seleznev-2/|title=Contained in the Investigation and Trial of Roman Seleznev – Dream Market URL|website=www.dream-market-url.com|language=en-US|access-date=2017-09-09}}</ref> which he used to operate automated stolen credit card vending shops. Besides, Seleznev bought whole advertising space for dumps section on then-prominent illegal carding forum, [[carder.su]]<ref>{{Cite web|url=http://garwarner.blogspot.com/2016/08/roman-seleznev-aka-track2-bulba-zagreb.html|title=CyberCrime & Doing Time: Roman Seleznev (AKA Track2 / Bulba / Zagreb / smaus) Found Guilty on 38 of 40 Charges|last=Phishme|first=Gary Warner, Uab /|date=2016-08-25|website=CyberCrime & Doing Time|access-date=2017-09-09}}</ref> In 2012, this forum was shut down during an operation mounted by [[United States Department of Homeland Security|DHS]].<ref>{{Cite web|url=https://www.justice.gov/usao-nv/pr/nevada-prosecutor-and-homeland-security-investigations-special-agent-receive-awards-their|title=Nevada Prosecutor And Homeland Security Investigations Special Agent Receive Awards For Their Work On Cybercrime Case|website=www.justice.gov|language=en|access-date=2017-09-09}}</ref> As [[Horohorin Vladislav|BadB]] advertising campaign was also shut down on carder.su at the time, BadB was outraged and massive [[Denial-of-service attack|DDoS]] war ensued. However, in August 2010, [[Horohorin Vladislav|BadB]] was arrested by [[United States Secret Service Uniformed Division|USSS]] and Seleznev was left without competition for a while. |
||
===Terrorist attack=== |
===Terrorist attack=== |
||
{{main|2011 Marrakesh bombing}} |
{{main|2011 Marrakesh bombing}} |
||
In 2011, while on vacation in Morocco, |
In 2011, while on vacation in Morocco, Seleznev was among the victims of a terrorist attack<ref>{{Cite web|url=https://sputniknews.com/voiceofrussia/2011/04/29/49644637.html|title=Russian deputy’s son hit in Morocco blast|website=sputniknews.com|language=en|access-date=2017-09-04}}</ref> where he received a severe head injury and was evacuated to Moscow for surgery. |
||
===Arrest and trial=== |
===Arrest and trial=== |
||
Seleznev's 2014 arrest caused controversy as he was arrested outside of the United States, in [[Maldives]],<ref>{{Cite news|url=http://www.bbc.com/news/world-us-canada-39672498|title=Russian MP incensed after son jailed in US|date=2017-04-21|work=BBC News|access-date=2017-04-22|language=en-GB}}</ref> and transported to Guam to stand trial. Citing "law enforcement reasons" the [[United States Department of Justice|Justice Department]] would not disclose the location of Seleznev's arrest. [[Jeh Johnson]], Secretary of Homeland Security, said in a statement that the arrest showed that "despite the increasingly borderless nature of transitional organized crime, the long arm of justice – and the [[Department of Homeland Security]] – will continue to disrupt and dismantle sophisticated criminal organizations".<ref>{{cite news|date=7 July 2014|title=U.S. arrests Russian in hacking of retail systems|url=https://www.reuters.com/article/2014/07/07/us-usa-cybersecurity-arrest-idUSKBN0FC25920140707/|newspaper=[[Reuters]]|accessdate=8 July 2014}}</ref><ref>{{cite news|date=7 July 2014|title=Russian Arrested in Hacking Case Filed in Seattle|url=http://abcnews.go.com/Technology/wireStory/russian-arrested-hacking-case-filed-seattle-24462201|newspaper=[[American Broadcasting Company]]|accessdate=8 July 2014}}</ref> |
|||
Russian officials complained that |
Russian officials complained that Seleznev's arrest amounted to "kidnapping" and said the US had failed to notify Russian consulates of Seleznev's arrest. The Russian [[Ministry of Foreign Affairs (Russia)|Foreign Ministry]] indicated that the [[Maldives]] had been the site of Seleznev's arrest, and criticized the Maldives for failing to follow "international legal norms" in Seleznev's arrest.<ref>{{cite news|date=8 July 2014|title=Russia Calls U.S. Arrest of Alleged Hacker 'Kidnapping'|url=http://www.themoscowtimes.com/news/article/russia-calls-us-arrest-of-alleged-hacker-kidnapping/503145.html|newspaper=[[The Moscow Times]]|accessdate=8 July 2014}}</ref> |
||
After an eight-day trial in 2016,<ref>{{cite web|url=https://patch.com/washington/seattle/roman-seleznev-sentenced-nearly-30-years-hacking-case|title=Roman |
After an eight-day trial in 2016,<ref>{{cite web|url=https://patch.com/washington/seattle/roman-seleznev-sentenced-nearly-30-years-hacking-case|title=Roman Seleznev Gets Nearly 30 Years In Hacking Case|author=|date=21 April 2017|website=patch.com|accessdate=21 May 2017}}</ref> a federal court jury found Seleznev guilty of the 38 counts,<ref>{{cite web|url=https://www.justice.gov/opa/pr/russian-cyber-criminal-convicted-38-counts-related-hacking-businesses-and-stealing-more-two|title=Russian Cyber-Criminal Convicted of 38 Counts Related to Hacking Businesses and Stealing More Than Two Million Credit Card Numbers}}</ref><ref>{{cite news|url=http://www.seattlepi.com/local/crime/article/The-Seattle-case-against-Russian-hacker-just-got-10792361.php|title=The Seattle case against a Russian hacker just got weirder|author=Levi Pulkkinen|date=December 12, 2016|newspaper=[[Seattle Post-Intelligencer]]}}</ref> and the following year was sentenced to 27-years imprisonment.<ref name=sentence>{{cite web|url=https://www.justice.gov/opa/pr/russian-cyber-criminal-sentenced-27-years-prison-hacking-and-credit-card-fraud-scheme|title=Russian Cyber-Criminal Sentenced to 27 Years in Prison for Hacking and Credit Card Fraud Scheme}}</ref><ref>{{cite web|url=https://www.nytimes.com/2017/04/21/technology/russian-hacker-sentenced.html|title=Russian Hacker Sentenced to 27 Years in Credit Card Case|first=Nicole|last=Perlroth|date=21 April 2017|publisher=|accessdate=21 May 2017|via=NYTimes.com}}</ref> |
||
On May 19, 2017, |
On May 19, 2017, Seleznev faced charges in Atlanta after being convicted in federal court.<ref>{{cite web|url=https://www.justice.gov/usao-ndga/pr/convicted-russian-cyber-criminal-roman-seleznev-faces-charges-atlanta|title=Convicted Russian Cyber Criminal Roman Seleznev faces charges in Atlanta|author=|date=|website=www.justice.gov|accessdate=21 May 2017}}</ref><ref>{{cite web|url=https://krebsonsecurity.com/tag/roman-seleznev/|title=Roman Seleznev — Krebs on Security|author=|date=|website=krebsonsecurity.com|accessdate=21 May 2017}}</ref> |
||
==References== |
==References== |
||
Line 54: | Line 54: | ||
*[https://www.linkedin.com/pulse/easily-guessed-password-led-downfall-russian-empire-doj-m-shaffer Easily guessed password led to downfall of Russian cyber-criminal's empire, according to DOJ officials] – [[LinkedIn]] |
*[https://www.linkedin.com/pulse/easily-guessed-password-led-downfall-russian-empire-doj-m-shaffer Easily guessed password led to downfall of Russian cyber-criminal's empire, according to DOJ officials] – [[LinkedIn]] |
||
{{DEFAULTSORT: |
{{DEFAULTSORT:Seleznev, Roman}} |
||
[[Category:1984 births]] |
[[Category:1984 births]] |
||
[[Category:Living people]] |
[[Category:Living people]] |
Revision as of 08:12, 29 April 2018
This article may require copy editing for grammar, style, cohesion, tone, or spelling. (September 2017) |
Roman Valerevich Seleznev | |
---|---|
Роман Валерьевич Селезнев | |
Born | 1984 (age 40–41) |
Nationality | Russian |
Other names | nCuX, Track2 (hacker handle) |
Citizenship | Russian |
Known for | Hacking |
Criminal charge(s) | Hacking, Wire fraud, Racketeering |
Father | Valery Seleznev |
Roman Valerevich Seleznyov (Template:Lang-ru; born 1984), also known by his hacker handle, Track2, is a Russian computer hacker. He was indicted in Washington in 2011, and has been convicted of hacking into servers to steal credit card data. Seleznev's activities have been speculated to have caused damages to banks and credit-card companies ranging in the millions of dollars. Seleznev was arrested on July 5, 2014, and was sentenced to 27 years in prison for counts of wire fraud, intentional damage to a protected computer, and identity theft.[1]
Biography
Seleznev is the son of Valery Seleznev, a member of the Duma, Russia’s parliament.[2]
Initial activity
Seleznev started his activities in earlier 2003, on Carderplanet, providing SSN and criminal history research service for fee, using stolen LexisNexis's accurint.com accounts, among others. Later on, Seleznev's employee created a scanner which allowed the user to scan the internet for MSRDP open ports (3389 by default). at the time, default configuration provided poor protected and many administrator accounts remained without a password. Exploiting this vulnerability, Seleznev and his partner gained an access to many remote computers, including ones containing financial and credit card data. At this point, Seleznev contacted BadB in order to gain his experience exploiting financial systems. In turn, BadB, another notorious cyber criminal identified by USSS as Horohorin Vladislav in 2009, provided Seleznev with automated script which looked for traces of credit cards in systems and networks, and thus Seleznev obtained his first credit card dumps which, in turn, he resold to BadB. As the time went on, Seleznev became unsatisfied with BadB services and decided to start his own credit card dumps vending operation under nickname nCuX ("psycho" in Russian).
In 2008, Seleznev extended his operations from just scanning MSRDP with default passwords or no passwords at all to developing sophisticated malware which had the ability to intercept network traffic and search network shares, distributing it through various flaws in internet browsers by injecting malicious code into advertising traffic and thus he infected many computers, mostly in the United States.
In 2009, BadB started the first automated stolen credit card shop. Soon after that, Seleznev announced that he is out of business under nickname nCuX, but immediately created 2 other names track2 and bulba.cc,[3] which he used to operate automated stolen credit card vending shops. Besides, Seleznev bought whole advertising space for dumps section on then-prominent illegal carding forum, carder.su[4] In 2012, this forum was shut down during an operation mounted by DHS.[5] As BadB advertising campaign was also shut down on carder.su at the time, BadB was outraged and massive DDoS war ensued. However, in August 2010, BadB was arrested by USSS and Seleznev was left without competition for a while.
Terrorist attack
In 2011, while on vacation in Morocco, Seleznev was among the victims of a terrorist attack[6] where he received a severe head injury and was evacuated to Moscow for surgery.
Arrest and trial
Seleznev's 2014 arrest caused controversy as he was arrested outside of the United States, in Maldives,[7] and transported to Guam to stand trial. Citing "law enforcement reasons" the Justice Department would not disclose the location of Seleznev's arrest. Jeh Johnson, Secretary of Homeland Security, said in a statement that the arrest showed that "despite the increasingly borderless nature of transitional organized crime, the long arm of justice – and the Department of Homeland Security – will continue to disrupt and dismantle sophisticated criminal organizations".[8][9]
Russian officials complained that Seleznev's arrest amounted to "kidnapping" and said the US had failed to notify Russian consulates of Seleznev's arrest. The Russian Foreign Ministry indicated that the Maldives had been the site of Seleznev's arrest, and criticized the Maldives for failing to follow "international legal norms" in Seleznev's arrest.[10]
After an eight-day trial in 2016,[11] a federal court jury found Seleznev guilty of the 38 counts,[12][13] and the following year was sentenced to 27-years imprisonment.[1][14]
On May 19, 2017, Seleznev faced charges in Atlanta after being convicted in federal court.[15][16]
References
- ^ a b "Russian Cyber-Criminal Sentenced to 27 Years in Prison for Hacking and Credit Card Fraud Scheme".
- ^ Wilber, Del Quentin (7 July 2014). "Russian Charged by U.S. as Hacker Is Duma Member's Son". Bloomberg L.P. Retrieved 8 July 2014.
- ^ "Contained in the Investigation and Trial of Roman Seleznev – Dream Market URL". www.dream-market-url.com. Retrieved 2017-09-09.
- ^ Phishme, Gary Warner, Uab / (2016-08-25). "CyberCrime & Doing Time: Roman Seleznev (AKA Track2 / Bulba / Zagreb / smaus) Found Guilty on 38 of 40 Charges". CyberCrime & Doing Time. Retrieved 2017-09-09.
{{cite web}}
: CS1 maint: multiple names: authors list (link) - ^ "Nevada Prosecutor And Homeland Security Investigations Special Agent Receive Awards For Their Work On Cybercrime Case". www.justice.gov. Retrieved 2017-09-09.
- ^ "Russian deputy's son hit in Morocco blast". sputniknews.com. Retrieved 2017-09-04.
- ^ "Russian MP incensed after son jailed in US". BBC News. 2017-04-21. Retrieved 2017-04-22.
- ^ "U.S. arrests Russian in hacking of retail systems". Reuters. 7 July 2014. Retrieved 8 July 2014.
- ^ "Russian Arrested in Hacking Case Filed in Seattle". American Broadcasting Company. 7 July 2014. Retrieved 8 July 2014.
- ^ "Russia Calls U.S. Arrest of Alleged Hacker 'Kidnapping'". The Moscow Times. 8 July 2014. Retrieved 8 July 2014.
- ^ "Roman Seleznev Gets Nearly 30 Years In Hacking Case". patch.com. 21 April 2017. Retrieved 21 May 2017.
- ^ "Russian Cyber-Criminal Convicted of 38 Counts Related to Hacking Businesses and Stealing More Than Two Million Credit Card Numbers".
- ^ Levi Pulkkinen (December 12, 2016). "The Seattle case against a Russian hacker just got weirder". Seattle Post-Intelligencer.
- ^ Perlroth, Nicole (21 April 2017). "Russian Hacker Sentenced to 27 Years in Credit Card Case". Retrieved 21 May 2017 – via NYTimes.com.
- ^ "Convicted Russian Cyber Criminal Roman Seleznev faces charges in Atlanta". www.justice.gov. Retrieved 21 May 2017.
- ^ "Roman Seleznev — Krebs on Security". krebsonsecurity.com. Retrieved 21 May 2017.