Albert Gonzalez, known online as SoupNazi, was sentenced to 20 years in prison for leading a hacking ring behind some of the largest payment card breaches prosecuted in the United States. U.S. authorities said Gonzalez and his co-conspirators infiltrated major retailers and payment processors including TJX, BJ’s Wholesale Club, OfficeMax, Barnes & Noble, Sports Authority, Dave & Buster’s, 7-Eleven, Hannaford Brothers, and Heartland Payment Systems, stealing tens of millions of credit and debit card numbers and causing losses estimated at nearly $200 million, with broader economic damage potentially reaching into the billions.
Court records said the group used wardriving to find vulnerable wireless networks, deployed sniffers and Trojan malware to capture payment card data, and moved stolen information through anonymous online currencies and bank accounts in Eastern Europe. The Justice Department described the operation as the largest hacking and identity theft ring then prosecuted by the U.S. government, involving accomplices in the United States, Estonia, Ukraine, and Turkey, affecting more than 250 financial institutions, and resulting in multiple guilty pleas, extraditions, and related convictions tied to the sale and fraudulent use of more than 40 million stolen card numbers.

See the reporting duties and controls this puts on the clock.
2 events from the most recent confirmed update back to the earliest known activity.
Court documents said Albert Gonzalez and co-conspirators infiltrated U.S. retail networks and payment processors using wardriving, sniffer programs, and malware, stealing more than 40 million payment card numbers and affecting more than 250 financial institutions. The stolen data was sold for fraudulent use, used in ATM cash-out fraud, and laundered through anonymous internet-based currencies and Eastern European bank accounts.
On 2010-03-26, Albert Gonzalez was sentenced for his lead role in massive payment card data thefts tied to major retailers and Heartland Payment Systems. The sentence was described as 20 years in prison, with the Justice Department specifying concurrent terms of 20 years and 20 years and one day.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
3 references tracked. Mallory keeps watching after this page renders.
justice.gov
Open sourceabcnews.com
Open sourcestarnewsonline.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.