Web hacker 'Alfabeto Virtual' thrown in the clink for 3 months by US judge who wanted to 'send a message'

By contrast, Russian hack-treason trial ends with 22-year sentence and accusations of foul play

A US judge this week sentenced website hacker Billy Anderson to three months behind bars, refusing his lawyer's request not to put him in jail, in order to "send a message" to others.

Anderson, 42, of Torrance, California, targeted thousands of websites under the hacker name AlfabetoVirtual, and boasted about his efforts on a hacking forum. But it was when he brought down the website of New York City's comptroller for nearly two days in 2015, leaving his pseudonym on the site, and broke into another belonging to military academy West Point the following year, that the authorities chased him down.

Anderson was ordered to pay a total of $12,804 to cover the costs of getting the two government websites patched and back online. But – noting that he had expressed remorse for his actions – Manhattan federal district judge Laura Swain gave him far less than the 12 to 18 months the government prosecutor had recommended [PDF].

The judge refused a plea [PDF] for a non-custodial sentence from his lawyer however saying that "these kinds of intrusions undermine confidence in government," and noting that Anderson only stopped his activities after he knew prosecutors were on his tail.

Anderson apologized for his actions and claimed the trial had given him pause for thought. "I was able to see the damage that I had caused," he told the court. "I would just like to apologize for everything that I've committed."

The case was notable for the level of rancor between government prosecutors and Anderson's lawyers. In one filing, his lawyer complained that "one of the perplexing aspects of the government's pleading is its downright vindictive tone and tenor."

But it's not perplexing at all: one of the government prosecutors told the court that Anderson had offered to cooperate with the government in order to reduce his sentence by promising information on other hackers, including their real identities. But none of the information he provided led to any new cases or arrests, the prosecutor explained. If there's one thing government prosecutors don't like it's being strung along.

As well as his three-month stay in prison, Anderson, who pleaded guilty in October to two counts of compute fraud, was sentenced to three years of supervised release, and ordered to carry out 200 hours of community service.

And now to Russia

Meanwhile, in Russia this week, an entirely different kind of hacking case saw a former senior counter-intelligence officer and a cybersecurity expert found guilty of treason and given 22 and 14-year prison sentences respectively. That's years, not months.

The trial of Colonel Sergei Mikhailov, an ex-FSB officer, and Ruslan Stoyanov, the former head of investigations for Kaspersky Lab, was carried out in secret by a military court over several months, and is thought to concern the leak of information regarding Russia's shenanigans during the 2016 US presidential campaign.

The Russian media has reported that Mikhailov – who at the time was deputy head of cyber intelligence at Russia's security agency – contacted Stoyanov to tell him about an FSB investigation into Russian businessman Pavel Vrublevsky, who allegedly knocked a payments system offline in a distributed denial-of-service attack. Mikhailov apparently handed details of this FSB probe to the FBI, and passed a copy of the notes to Stoyanov, who is believed to have shared this info with an FBI-linked contact in the computer security industry.

The details are murky due to the classified nature of the hearings, however the upshot is, Mikhailov and Stoyanov were ultimately accused and convicted of passing state information to foreign intelligence agencies.

The possible tie-in with the US presidential election is due to the fact that were arrested in December 2016: the same timeframe that the FBI ramped up its investigation into Russian interference with the White House race in America. According to Russian reports, Mikhailov was the main point of contact between the Russian government and Western security agencies on all things cyber, so suspicion fell on him, an alleged leaker of state secrets, when the FBI become so certain of Russian meddling that it went public.

Say what?

Whether he ended up sharing information on the Kremlin's operations with the FBI is unclear. But in a very Russian turn of events, his lawyer claimed that the entire arrest and trial had nothing to do with US election interference, but was instead the result of a campaign by the Russian businessman Vrublevsky.

Dread Pirate Roberts

I helped catch Silk Road boss Ross Ulbricht: Undercover agent tells all


"The case has been concocted at Vrublevsky’s orders," Mikhailov's lawyer said, while also noting that she was not allowed to talk about anything that happened during the trial itself.

Vrublevsky confirmed that he had testified during the trial, but that it wasn't the content of the information that resulted in Mikhailov being found guilty of treason but rather the fact that he had provided information about an FSB investigation to a foreign citizen.

And if all that wasn't suspicious enough, Vrublevsky continued to complain that Mikhailov had abused his position to go after "internet entrepreneurs" – which included himself – and turn them into "cybercriminals."

Nothing strange to see here: just a businessman waging a vendetta against a deputy head of the security services and winning in military court. ®

Similar topics

Other stories you might like

  • If you're Intel, self-driving cars look an awful lot like PCs

    Hardware capabilities, latest feature updates? You'll get what you pay for

    Intel's vision of the computing architecture of autonomous vehicles is similar to that of PCs, with pricey models getting better hardware and the latest software, and cheaper self-driving cars getting the bare minimum.

    The segments of premium and mid-range cars will need extra compute and over-the-air update capabilities to enable increasing levels of autonomous driving, said Erez Dagan, executive vice president at Mobileye, Intel's self-driving car system division, speaking at the Evercore ISI Autotech & AI Forum this week.

    On the other hand, low-end vehicles will have basic equipment, sensors, and features as mandated or incentivized by regulations like the EU's General Safety Regulation, which focuses on improving driver safety.

    Continue reading
  • Researchers finger new APT group, FamousSparrow, for hotel attacks

    Espionage motive mooted in attacks which hit industry, government too

    Researchers at security specialist ESET claim to have found a shiny new advanced persistent threat (APT) group dubbed FamousSparrow - after discovering its custom backdoor, SparrowDoor, on hotels and government systems around the world.

    "FamousSparrow is currently the only user of a custom backdoor that we discovered in the investigation and called SparrowDoor," ESET researcher and co-author of the report Tahseen Bin Taj explained in a prepared statement. "The group also uses two custom versions of Mimikatz. The presence of any of these custom malicious tools could be used to connect incidents to FamousSparrow."

    The group can be traced back to 2019, the researchers claimed, though the attacks tracked in the report made use of the ProxyLogon vulnerability in Microsoft Exchange starting in March this year. Victims were spread around Europe, the Middle East, the Americas, Asia, and Africa - without a single one being discovered in the US, oddly.

    Continue reading
  • Is it a bird? Is it a plane? Nah, it's just Windows suffering from a bit of vertigo

    Up above the streets and houses, XP's flying high

    Bork!Bork!Bork! Windows XP continues to hang in there – quite literally – as the operating system does what it does best some 90 metres above the London's River Thames.

    The screen, spotted by Register reader Andy Jones while safely ensconced within the confines of an Emirates Air Line gondola, appears to be in something of a boot loop. It looks to be endlessly resetting as the UK capital city's cable car attraction grinds itself along the kilometre or so between the Greenwich Peninsula and the Royal Docks.

    Continue reading
  • How many Android containers can you fit on your VM?

    The Register speaks to Canonical about running the OS in the cloud

    Interview Developers targeting Android are spoiled for choice with their platforms.

    There are a variety of options available for running Android application development environments these days. Even Microsoft has promised that its upcoming Windows 11 will eventually be able to run the apps on the desktop and has long since supported the mobile OS via its Your Phone app, even while smothering its ailing Windows Phone with a cuddly Android pillow.

    For Canonical, however, Anbox remains a cloud product, according to Simon Fels, engineering manager and is therefore unlikely to feature in any desktop version of the company's Ubuntu distribution any time soon, although with September's announcement it will now cheerfully scale from the heights of the cloud down to a single Virtual Machine via the Appliance version.

    Continue reading
  • Infosys admits it still hasn't fully fixed Indian tax portal

    Deadline came and went, but over 750 'resources' are still hard at work

    Infosys has admitted it has missed the Indian government's deadline to fix the tax portal it built, but which has been a glitchy mess since its June 2021 launch.

    The portal was introduced to make filing taxes more efficient. It delivered the opposite – India's government was forced to extend filing deadlines amid user complaints that they found the portal impossible to use. The portal was even placed into "emergency maintenance" mode at one point, during which it was completely unavailable.

    Infosys was shamed by ministers and on August 22nd was given a September 15th deadline to fix the portal.

    Continue reading
  • Here's an idea: Verification for computer networks as well as chips and code

    What tools are available? What are the benefits? Let's find out

    Systems Approach In 1984, artificial intelligence was having a moment. There was enough optimism around it to inspire me to explore the role of AI in chip design for my undergraduate thesis, but there were also early signs that the optimism was unjustified.

    The term “AI winter” was coined the same year and came to pass a few years later. But it was my interest in AI that led me to Edinburgh University for my PhD, where my thesis advisor (who worked in the computer science department and took a dim view of the completely separate department of artificial intelligence) encouraged me to focus on the chip design side of my research rather than AI. That turned out to be good advice at least to the extent that I missed the bursting of the AI bubble of the 1980s.

    The outcome of all this was that I studied formal methods for hardware verification at a point in time where hardware description languages (HDLs) were just getting off the ground. These days, HDLs are a central part of chip design and formal verification of chip correctness has been used for about 20 years. I’m pretty sure my PhD had no impact on the industry – these changes were coming anyway.

    Continue reading
  • Imagine a fiber optic cable that can sense it's about to be dug up and send a warning

    Forget wiring cities with IoT devices – this could be how wide-scale sensing gets done

    Imagine an optic fiber that can sense the presence of a nearby jackhammer and warn its owner that it is in danger of being dug up, just in time to tell diggers not to sink another shaft. Next, imagine that an entire city's installed base of fiber could be turned into sensors that will make planners think twice before installing IoT devices.

    Next, stop imagining: the tech is real, already working, and was yesterday used to demonstrate the impact of an earthquake.

    As explained to The Register by Mark Englund, CEO of FiberSense, the company uses techniques derived from sonar to sense vibrations in fiber cables. FiberSense shoots lasers down the cables and observes the backscatter as the long strands of glass react to their environment.

    Continue reading
  • Unable to test every tourist and unable to turn them away, Greece used ML to pick visitors for COVID-19 checks

    Inside the software built to figure out groups of potentially infected, asymptomatic passengers

    Faced with limited resources in a pandemic, Greece turned to machine-learning software to decide which sorts of travelers to test for COVID-19 as they arrived in the country.

    The system in question used reinforcement learning, specifically multi-armed bandit algorithms, to identify which potentially infected, asymptomatic passengers were worth testing and putting into quarantine if necessary. It also was able to produce up-to-date statistics on infections for officials to analyze, such as early signs of the emergence of COVID-19 hot spots abroad, we're told.

    Nicknamed Eva, the software was put to use at all 40 of Greece's entry points from August 6 to November 1 last year. Incoming travelers were asked to fill out a questionnaire detailing the country and region they were coming from as well as their age and gender. Based on these characteristics, Eva selected whether they should be tested for COVID-19 upon arrival. At its peak, Eva was apparently processing between roughly 30,000 and 55,000 forms a day, each form representing a household, and about 10 to 20 per cent of households were tested.

    Continue reading
  • Angry birds ground some Google Wing drones in Australia

    Between COVID and corvids, locked-down Aussies can't catch a break - or a coffee lowered from the treetops

    Some of Google parent company Alphabet's Wing delivery drones have been grounded by angry Australian birds.

    As reported by the Australian Broadcasting Corporation, and filmed by residents of Canberra, ravens have attacked at least one of Wing's drones during a delivery run.

    Canberra, Australia's capital city, is currently in COVID-caused lockdown. It's also coming into spring – a time when local birds become a menace in the leafy city. Magpies are a particular hazard because they swoop passers-by who they deem to be threateningly close to their nests and the eggs they contain. Being swooped is very little fun – magpies dive in, often from a blind spot, snapping their sharp beaks, and can return two or three times on a single run. Swooping is intimidating for walkers, and downright dangerous for cyclists.

    Continue reading
  • Memory prices to dive in late 2022, says Gartner

    Firm says 40 per cent of a server's bill of material costs are tied to memory

    Prices for DRAM and NAND flash are set to fall, sharply, in the second half of 2022 according to analyst firm Gartner.

    In a memo published last week and obtained by The Register, the firm predicts “oversupply” of memory chips will develop as demand eases and supply increases. A “significant price reduction” is therefore likely, the firm states, without offering a more precise estimate of how far prices will fall.

    The memo appears to be is directed at hardware manufacturers and advises them to start designing products that use more memory or keep memory and price the same but add other components – better CPUs, batteries or screens are suggested - to keep overall bill of material costs the same while also making devices more attractive.

    Continue reading
  • AWS announces new region in the Land of the Long White Cloud – New Zealand

    Hopes three availability zones will be hobbit-forming for local businesses and government agencies

    Amazon Web Services has announced it will build a Region in New Zealand and light it up by the year 2024.

    The forthcoming Asia Pacific (Auckland) Region will feature three availability zones - a configuration AWS rarely exceeds.

    The cloud colossus has said it will spend US$5.3 billion in New Zealand over the next 15 years, some of which will be capital expenditure on its new bit barns.

    Continue reading

Biting the hand that feeds IT © 1998–2021