By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Gadget
  • Gaming
  • Videos
Search
  • About
  • Privacy
  • Terms
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Two hackers charged with last year’s DEA portal breach
Share
Sign In
Notification Show More
Latest News
Best E-Reader for 2023: Top Picks for Book Lovers
March 24, 2023
Apple’s Friday Night Baseball Will Require an Apple TV Plus Subscription This Season
March 24, 2023
Resident Evil 4 Remake Takes the Horror Level of the Original Up a Notch
March 24, 2023
How to Make a Public Archive of Your Tweets
March 24, 2023
Meta’s new hand tracking feature almost feels like touching the future
March 24, 2023
Aa
World of SoftwareWorld of Software
Aa
  • News
  • Gadget
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
Search
  • Categories
    • News
    • Gadget
    • Software
    • Mobile
    • Computing
    • Gaming
    • Videos
  • Bookmarks
    • Customize Interests
    • My Bookmarks
Have an existing account? Sign In
Follow US
  • About
  • Privacy
  • Terms
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Blog > News > Two hackers charged with last year’s DEA portal breach
News

Two hackers charged with last year’s DEA portal breach

Press Room
Press Room March 18, 2023
Updated 2023/03/18 at 8:45 PM
Share
SHARE

Two men have been charged for their alleged roles in last year’s hack of the Drug Enforcement Agency’s web portal, as reported earlier by Gizmodo. In a press release posted earlier this week, the Department of Justice says Sagar Steven Singh and Nicholas Ceraolo stole a police officer’s credentials to access a federal law enforcement database that they used to extort victims.

Prosecutors claim the 19-year-old Singh and 25-year-old Ceraolo are members of a hacking group called Vile, which often steals personal information from victims and then threatens to dox them online if they don’t receive a payment. While the DOJ doesn’t explicitly say which agency Singh and Ceraolo allegedly hacked into, it states the portal contains “detailed, nonpublic records of narcotics and currency seizures, as well as law enforcement intelligence reports.” This tracks with a report from Krebs on Security that indicates the hack is related to the DEA.

According to the complaint, Singh used the information from the federal portal to threaten his victims, and in one instance, wrote to one person that he would harm their family unless they gave him the credentials to their Instagram accounts. He then attached the victim’s social security number, driver’s license number, home address, and other personal information he collected from the government’s database to his threat.

Fake emergency data requests are becoming increasingly common.

“Through [the] portal, I can request information on anyone in the US doesn’t matter who, nobody is safe,” Singh allegedly wrote to the victim. “You’re gonna comply to me if you don’t want anything negative to happen to your parents.”

Meanwhile, Ceraolo used the portal to obtain the email credentials belonging to a Bangladeshi police officer. Ceraolo allegedly posed as the officer during his correspondence with an unnamed social media platform, and convinced the site to provide the home address, email address, and telephone number of a specific user under the guise that the victim “participated in ‘child extortion,’ blackmail, and threatened the Bangladeshi government.” Ceraolo allegedly attempted to scam a popular gaming platform and facial recognition company the same way, but both refused the requests.

The scam carried out by Ceraolo is becoming increasingly common. Last year, a report from Bloomberg revealed that Apple, Meta, and Discord fell victim to similar ploys that involved hackers posing as police officers seeking emergency data requests. While law enforcement sometimes asks social media sites for data about a particular user if they’re involved in a crime, this requires a subpoena or search warrant signed by a judge. However, emergency data requests don’t need this kind of approval, which is something hackers are taking advantage of.

As pointed out by Krebs on Security, Ceraolo has actually been described as a security researcher in numerous reports that credit him with uncovering security vulnerabilities related to T-Mobile, AT&T, and Cox Communications. Law enforcement raided Ceraolo’s home in May 2022 before searching Singh’s residence in September.

While Singh was arrested in Pawtucket, Rhode Island on Tuesday, Ceraolo turned himself in shortly after the DOJ announced its charges. According to the DOJ, Ceraolo faces up to 20 years behind bars for conspiracy to commit wire fraud, and both Ceraolo and Singh could face five years in prison for conspiracy to commit computer intrusions.

You Might Also Like

Meta’s new hand tracking feature almost feels like touching the future

Twitter Blue subscriptions roll out globally, despite missing many promised features

Congress seems more determined to ban TikTok than ever

PayPal’s bringing its passkey logins to Android

Twitter claims ‘legacy’ blue checkmarks will start to disappear on April Fools’ Day

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Press Room March 18, 2023
Share this Article
Facebook TwitterEmail Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article IF YOU LOVE CAMPING THEN THESE INVENTIONS ARE FOR YOU
Next Article The Best White-Noise Machines for a Blissful Night’s Sleep
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow
banner banner
Join our Newsletter
Get the latest tech news into your inbox
Join Now

Latest News

Best E-Reader for 2023: Top Picks for Book Lovers
Computing
Apple’s Friday Night Baseball Will Require an Apple TV Plus Subscription This Season
Software
Resident Evil 4 Remake Takes the Horror Level of the Original Up a Notch
Gaming
How to Make a Public Archive of Your Tweets
Gadget

You Might also Like

News

Meta’s new hand tracking feature almost feels like touching the future

7 Min Read
News

Twitter Blue subscriptions roll out globally, despite missing many promised features

3 Min Read
News

Congress seems more determined to ban TikTok than ever

6 Min Read
News

PayPal’s bringing its passkey logins to Android

2 Min Read
//

We influence 20 million users and is the number one business and technology news network on the planet

Quick Link

  • About
  • Privacy
  • Terms
  • Contact

Support

  • Customize Interests
  • My Bookmarks

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US

Copyright © All Rights Reserved. World of Software.

Join Us!

Subscribe to our newsletter and never miss our latest news, podcasts etc..

Zero spam, Unsubscribe at any time.

Removed from reading list

Undo
Welcome Back!

Sign in to your account

Lost your password?