Jordanian pleads guilty to selling access to 50 corporate networks
好的,我现在需要帮用户总结一篇文章,控制在100字以内。首先,我得仔细阅读文章内容,抓住关键信息。 文章讲的是一个约旦男子承认作为“访问经纪人”出售至少50家公司网络访问权限。他叫Feras Khalil Ahmad Albashiti,40岁,网名r1z。他在格鲁吉亚被捕,被引渡到美国。他将在2026年5月11日受审,面临最高10年监禁和25万美元罚款。此外,文章提到执法部门在2023年5月通过在线论坛调查时发现了他,并且他向一名卧底警官出售了访问权限。 还有提到初始访问经纪人的重要性,以及另一个俄罗斯人也因类似罪名认罪。微软警告说有经纪人滥用工具准备勒索软件攻击。 现在我需要把这些信息浓缩到100字以内。重点包括:约旦男子承认罪行、作为访问经纪人、涉及至少50家公司、被引渡到美国、面临刑罚、执法部门通过卧底行动发现他。 可能的结构是:约旦男子承认作为访问经纪人出售至少50家公司网络访问权限,被引渡到美国受审,面临最高10年监禁和罚款。执法部门通过卧底行动发现他的行为。 这样应该可以控制在100字以内,并且涵盖主要信息。 </think> 一名约旦男子承认作为“访问经纪人”,向至少50家公司出售网络访问权限,并被引渡至美国受审,面临最高10年监禁和25万美元罚款。 2026-1-19 14:45:18 Author: www.bleepingcomputer.com(查看原文) 阅读量:0 收藏

Hacker

A Jordanian man has pleaded guilty to operating as an "access broker" who sold access to the computer networks of at least 50 companies.

The Justice Department's Office of International Affairs secured Albashiti's extradition from Georgia (where he lived and was arrested) in July 2024.

40-year-old Feras Khalil Ahmad Albashiti (also known online as "r1z," "Feras Bashiti" and "Firas Bashiti") has entered a guilty plea to charges of fraud involving access credentials. Albashiti's sentencing before U.S. District Judge Michael A. Shipp is scheduled for May 11, 2026.

Wiz

The charges carry a maximum penalty of 10 years in prison and a fine of up to $250,000, or twice the gross gains or losses resulting from the offense, whichever is greater.

According to court documents, law enforcement officers investigating an online forum selling malware and malicious code in May 2023 identified Albashiti as the user behind the username "r1z."

He was charged after making the mistake of selling access to at least 50 victim companies' networks to an undercover law enforcement officer in exchange for cryptocurrency on May 19, 2023.

Initial access brokers have become critical middlemen in the cybercrime ecosystem, providing other threat actors with the credentials needed to breach victims' networks and drop malicious tools to steal data, deploy ransomware, or conduct espionage.

In November, a Russian national also pleaded guilty to acting as an initial access broker for Yanluowang ransomware affiliates that targeted at least eight U.S. companies between July 2021 and November 2022.

More recently, Microsoft warned that an initial access broker (tracked as Storm-0249) is abusing endpoint detection and trusted Microsoft Windows utilities to load malware and establish persistence on targets' systems in preparation for ransomware attacks.

Wiz

Secrets Security Cheat Sheet: From Sprawl to Control

Whether you're cleaning up old keys or setting guardrails for AI-generated code, this guide helps your team build securely from the start.

Get the cheat sheet and take the guesswork out of secrets management.


文章来源: https://www.bleepingcomputer.com/news/security/jordanian-pleads-guilty-to-selling-access-to-50-corporate-networks/
如有侵权请联系:admin#unsafe.sh