Imperial Valley Press

Hacker gets 5 years for Russian-linked Yahoo security breach

-

SAN FRANCISCO (AP) — A young computer hacker who prosecutor­s say unwittingl­y worked with a Russian spy agency was sentenced to five years in prison Tuesday for using data stolen in a massive Yahoo data breach to gain access to private emails.

U.S. Judge Vince Chhabria also fined Karim Baratov $250,000 during a sentencing hearing in San Francisco.

Baratov was named in a federal indictment last year that charged two Russian spies with orchestrat­ing the 2014 Yahoo breach involving 500 million users.

Baratov was charged with using that stolen data passed to him by Russia’s Federal Security Service to hack dozens of email accounts of journalist­s, business leaders and others.

Prosecutor­s said Baratov, 23, was an “internatio­nal hacker for hire” who did little or no research of his customers.

He pleaded guilty in November to nine felony hacking charges.

He acknowledg­ed that he began hacking as a teen seven years ago and charged customers $100 a hack to access web-based emails.

Baratov, who was born in Kazakhstan but lived in Toronto, Canada, where he was arrested last year, charged customers to obtain another person’s webmail passwords by tricking them to enter their credential­s into a fake password reset page.

Prosecutor­s said in court papers that Baratov’s Russian-language web site named “webhacker” advertised services for “hacking of email accounts without prepayment.”

Prosecutor­s said Russian security service paid Baratov to target dozens of email accounts using informatio­n obtained from the Yahoo hack.

Prosecutor­s argued that Russia’s Federal Security Service targeted Russian journalist­s, U.S. and Russian government officials and employees of financial services and other private businesses.

Baratov and his attorneys also said his work with the Russia spy agency was unwitting.

In court documents Baratov claimed he could access webmail accounts maintained by Google and Russian providers such as Mail.Ru and Yandex.

He would provide customers with a screenshot of the hacked account and promised he could change security questions so they could maintain control of the account.

The U.S. Justice Department charged two Russian spies with orchestrat­ing the 2014 security breach at Yahoo to steal data from 500 million users.

Dmitry Aleksandro­vich Dokuchaev and Igor Anatolyevi­ch remain at large and prosecutor­s believe they are living in Russia, which doesn’t have an extraditio­n treaty with the United States.

Baratov is believed to have collected more than $1.1 million in fees, which he used to buy a house and expensive cars.

Newspapers in English

Newspapers from United States