MonsterCloud Owner Accused of Billing Over $19M While Secretly Paying Ransoms to Decrypt Data
Overview
Zohar Pinhasi, also known by aliases Zack Silver and Zack Green, faces serious charges from the U.S. Department of Justice for allegedly defrauding victims of ransomware attacks. He is accused of secretly paying ransoms to cybercriminals to obtain decryption keys while misleading clients into believing he was using special tools for data recovery. This scheme reportedly generated over $19 million in fraudulent billing. The case raises significant concerns about the ethics of cybersecurity services and the trustworthiness of companies claiming to assist ransomware victims. It highlights the potential for exploitation in the cybersecurity industry, where victims are often desperate for solutions to regain access to their critical data.
Key Takeaways
- Affected Systems: Ransomware victims, cybersecurity service users, MonsterCloud customers
- Action Required: Victims should thoroughly vet cybersecurity providers and verify their claims regarding data recovery methods.
- Timeline: Disclosed on October 25, 2023
Original Article Summary
The U.S. Department of Justice (DoJ) on Wednesday announced charges against a 50-year-old U.S. and Israeli national for allegedly defrauding ransomware victims by secretly paying the attackers to obtain decryptors while claiming to use proprietary tools to recover their data. Zohar Pinhasi (aka Zack Silver and Zack Green) has been charged with two counts of wire fraud and one count of wire
Impact
Ransomware victims, cybersecurity service users, MonsterCloud customers
Exploitation Status
No active exploitation has been reported at this time. However, organizations should still apply patches promptly as proof-of-concept code may exist.
Timeline
Disclosed on October 25, 2023
Remediation
Victims should thoroughly vet cybersecurity providers and verify their claims regarding data recovery methods.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Ransomware, Critical.