Vape receipts help DOJ nab man who allegedly botnetted thousands of passwords


28-year-old Ukrainian national Glib Oleksandr Ivanov-Tolpintsev has been indicted by the Department of Justice for allegedly using a botnet to brute force people’s passwords, and then selling the credentials on a dark web store ominously called The Marketplace. According to the DOJ, Ivanov-Tolpintsev bragged that he was able to get at least 2,000 logins a week, and he allegedly told one of The Marketplace’s admins that he had cracked over 20,000 passwords. The DOJ’s description of the alleged methods and victims serve as a reminder of how much stolen information is out there, and the importance of implementing basic security principles.
The indictment, which can be read in full below, alleges that Ivanov-Tolpintsev talked about controlling a botnet, which is essentially a group of computers whose users don’t know they are infected with malware. He’s accused of using those computers’ power to guess people’s passwords over and over, far faster than he could with his own hardware. Then, according to the DOJ, he would sell those passwords to cybercriminals who used them to carry out fraudulent activity, such as ransomware attacks, or even accessing someone’s home security cameras.
Some of the alleged victims are perhaps a bit surprising. The criminal complaint lists two victims who were interviewed; one ran an IT business, the other was a security systems consultant who did work for the Department of Corrections. While the two victim’s systems are only a small portion of the over 6,000 compromised logins Ivanov-Tolpintsev is accused of putting up for sale, his alleged contributions are in turn just a drop in the bucket for The Marketplace. According to the complaint, vendors on the site are selling access to over 700,000 machines, and past buyers have used info purchased on The Marketplace to carry out over $100 million of fraud.
According to a report by CyberScoop, simple mistakes made it easier for investigators to accuse Ivanov-Tolpintsev. The IRS was granted access to email addresses with a warrant, and was able to link the alleged hacker to them using receipts from local vape and smoke shops, scans of his passport, and pictures on Google Photos. The emails also allegedly linked him to other accounts and identities that were related to The Marketplace, where the passwords were sold.
The DOJ says that if Ivanov-Tolpintsev is found guilty he could face up to 17 years in prison, and would have to hand over more than $80,000 that he allegedly made from selling information. He was originally caught by Polish authorities in late 2020, and was extradited to the US.
The story serves as a reminder of why good security practices are important. Things like using strong passwords and two-factor authentication can help better protect you against brute-force attacks, and occasionally scanning your computer for malware can keep your computer from inadvertently working to crack other people’s passwords. While authorities may be able to catch some cybercriminals, the vastness of The Marketplace (itself just a single site), shows that there’s plenty of people out there trying to get their hands on unprotected data.
28-year-old Ukrainian national Glib Oleksandr Ivanov-Tolpintsev has been indicted by the Department of Justice for allegedly using a botnet to brute force people’s passwords, and then selling the credentials on a dark web store ominously called The Marketplace. According to the DOJ, Ivanov-Tolpintsev bragged that he was able to get…
Recent Posts
- Hackers steal over $1bn in one of the biggest crypto thefts ever
- Annapurna’s 2025 lineup of indie games is full of tea and T-poses
- Andor is on the offensive in latest season 2 trailer
- Apple’s latest iOS update improves CarPlay, but not everyone will be able to access it
- Blendo Games’ oddball sci-fi shooter Skin Deep hits PC on April 30
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010