Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
Critical Oracle Solaris CVE-2024-21013 Flaw Lets Attackers Remotely Control Servers
August 6, 2026
Canadian Man Pleads Guilty to Hacking US Cloud Storage Provider
August 6, 2026
Critical Jenkins CVE-2024-28973 Lets Attackers Run Code on Controllers
August 6, 2026
Home/CyberSecurity News/Canadian Man Pleads Guilty to Hacking US Cloud Storage Provider
CyberSecurity News

Canadian Man Pleads Guilty to Hacking US Cloud Storage Provider

Key Takeaways A Canadian man, Connor Riley Moucka, has pleaded guilty to charges related to a large-scale hacking and extortion scheme targeting a U.S. cloud storage provider. The operation...

David kimber
David kimber
August 6, 2026 3 Min Read
3 0

Key Takeaways

  • A Canadian man, Connor Riley Moucka, has pleaded guilty to charges related to a large-scale hacking and extortion scheme targeting a U.S. cloud storage provider.
  • The operation compromised data from over 165 organizations, exposing billions of sensitive customer records and leading to millions in ransom payments.
  • Moucka faces significant prison time, with sentencing scheduled for October 27, following his extradition from Canada.

Connor Riley Moucka, a 26-year-old from Kitchener, Ontario, has admitted guilt in a U.S. court for his involvement in an extensive computer hacking and extortion conspiracy. The criminal enterprise, which operated between February and October 2024, is accused of breaching a U.S.-based software-as-a-service (SaaS) provider, impacting at least 165 of its clients.

Table Of Content

  • Key Takeaways
  • The Scope of the Cybercrime and Extortion
  • Legal Ramifications and Enforcement
  • What You Should Do

Prosecutors detailed that the campaign led to the exposure of billions of sensitive customer records and generated millions of dollars in illicit ransom payments. The perpetrators allegedly leveraged stolen login credentials to gain unauthorized access to cloud-hosted data managed by the provider.

The Scope of the Cybercrime and Extortion

Once inside the victim networks, Moucka and his co-conspirators exfiltrated terabytes of highly sensitive personal and business information. This stolen data encompassed a wide array of confidential details, including non-content call and text histories, banking information, payroll records, DEA registration numbers, driver’s license and passport data, Social Security numbers, and other forms of personally identifiable information (PII).

Authorities revealed that the stolen data was then used as leverage to coerce organizations into paying ransoms. Victims faced threats that their sensitive information would be publicly disclosed if they failed to comply with the demands. The scheme successfully extorted over $2.5 million in ransom payments.

In one particularly egregious instance, Moucka reportedly re-extorted a victim by threatening to release additional previously stolen data. This specific threat involved sensitive information pertaining to a government officer and relatives of a former government officer. Beyond direct extortion, the pilfered datasets were also advertised for sale on prominent cybercrime forums such as BreachForums, Exploit, XSS.is, and Telegram. Moucka personally profited by at least $495,000 from the illicit operation, according to the Justice Department.

The financial impact on the targeted businesses exceeded $9.5 million in known losses, not including the significant harm inflicted upon their customers. The breaches collectively affected a minimum of 100 million individuals.

Legal Ramifications and Enforcement

Moucka pleaded guilty to multiple federal charges, including computer fraud, wire fraud, aggravated identity theft, and conspiracy. His sentencing is scheduled for October 27. The aggravated identity theft conviction alone carries a mandatory minimum prison sentence of two years, while the other charges could result in a maximum sentence of 30 years. The final sentence will be determined by a federal judge, who will consider sentencing guidelines and statutory factors.

The investigation into this widespread cybercrime was spearheaded by the FBI, with critical support from the Justice Department, the Royal Canadian Mounted Police, and law enforcement agencies from Australia, Spain, Ukraine, and Türkiye. Moucka was apprehended six months after the breaches commenced and was subsequently extradited from Canada in July 2025. This case forms a component of the FBI’s broader Operation Riptide, an initiative focused on combating cybercrime, fraud, and dismantling criminal infrastructure and financial networks.

What You Should Do

  • Implement Multi-Factor Authentication (MFA): Mandate MFA for all user accounts, especially for access to cloud services and sensitive data.
  • Regularly Update and Patch Systems: Ensure all software, operating systems, and cloud environments are kept up-to-date with the latest security patches.
  • Strengthen Credential Management: Enforce strong, unique passwords and consider passwordless authentication where feasible. Regularly audit and rotate credentials.
  • Monitor for Unauthorized Access: Implement robust logging and monitoring solutions to detect unusual login attempts, data access patterns, or suspicious activities within cloud environments.
  • Conduct Employee Security Training: Educate staff on phishing, social engineering tactics, and the importance of secure password practices to prevent credential theft.
  • Backup Data Securely: Maintain isolated, encrypted backups of critical data to facilitate recovery in the event of a breach or ransomware attack.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

BreachExploitSecurityThreat

Share Article

David kimber

David kimber

David is a penetration tester turned security journalist with expertise in mobile security, IoT vulnerabilities, and exploit development. As an OSCP-certified security professional, David brings hands-on technical experience to his reporting on vulnerabilities and security research. His articles often feature detailed technical analysis of exploits and provide actionable defense recommendations. David maintains an active presence in the security research community and has contributed to multiple open-source security tools.

Previous Post

Critical Jenkins CVE-2024-28973 Lets Attackers Run Code on Controllers

Next Post

Critical Oracle Solaris CVE-2024-21013 Flaw Lets Attackers Remotely Control Servers

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
OWASP Releases Top 10 for Securing Generative AI LLM Applications
August 6, 2026
OpenAI Agents Uncover Critical Zero-Day Vulnerability
August 6, 2026
Meta AI Model Exploited to Hack Third-Party System
August 6, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
Emy Elsamnoudy
Emy Elsamnoudy
Jennifer sherman
Jennifer sherman
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Released to Detect MongoDB Vulnerability(CVE-2025-14847)

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us