Thecyberexpress Ukraine Uncovers $721K Cybercrime Scheme Targeting California Retailer
Article Content
- •An 18-year-old from Odesa is suspected of managing a cybercrime operation targeting a California retailer.
- •The scheme compromised nearly 30,000 accounts, leading to unauthorized purchases worth $721,000.
- •Infostealer malware was used to harvest sensitive data, highlighting the growing threat of credential theft.
Ukrainian authorities have identified an 18-year-old suspect linked to a cybercrime operation that compromised nearly 30,000 customer accounts of a California-based online retailer. The operation, which ran from 2024 to 2025, involved the use of infostealer malware to harvest sensitive data, including login credentials and session tokens. Approximately 5,800 of the compromised accounts were exploited for unauthorized purchases totaling around $721,000, leading to direct losses exceeding $250,000. The investigation was initiated after U.S. law enforcement alerted Ukrainian officials about potential cyberattacks from Ukraine targeting American e-commerce platforms. Evidence collected during searches included mobile phones, computers, and cryptocurrency accounts, but no arrests have been reported yet. The suspect is believed to have managed the infrastructure for processing and selling stolen data through underground platforms.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (8)
Following this threat?
Track Inditex in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Within Hours of Disclosure On September 10, 2026, GitLab released patches for critical vulnerabilities CVE-2026-85706 and CVE-2026-87719. CVE-2026-85706, a path traversal flaw, allows unauthenticated users to read arbitrary files from GitLab servers, while CVE-2026-87719 enables credential theft via insecure deserialization. Both…