Canadian cybersecurity executive arrested in federal extortion case
Canadian CYPFER founder Edward Dubrovsky was arrested in Pennsylvania on federal extortion charges linked to ShinyHunters.
Edward Dubrovsky, 54, former chief operating officer and founder of ransomware-negotiation firm CYPFER, was arrested Thursday in Pennsylvania on federal charges of conspiracy to extort and Hobbs Act extortion. Other case details remain sealed, but reporting and an FBI statement indicate the arrest aligns with the ShinyHunters intrusion of FBI systems that exposed personal data on thousands of bureau employees. The FBI said the breach came through a third-party platform where an Accenture contractor had not installed a security patch. Dubrovsky’s case was moved to the Eastern District of Texas, where he will be held pending a detention hearing.
- Edward Dubrovsky, CYPFER founder, charged with extortion conspiracy and Hobbs Act extortion.
- Case appears linked to ShinyHunters’ breach of FBI systems exposing employee data.
- FBI said an Accenture contractor left a third-party platform unpatched.
- Dubrovsky will be detained in the Eastern District of Texas pending a hearing.
Full article636 words · extracted from cyberscoop.com · click to collapse
Get our latest cybersecurity news first on Google.
Details of the case align with the investigation into ShinyHunters’ attack on FBI IT systems.
Federal authorities arrested a Canadian cybersecurity executive Thursday in Pennsylvania on charges of conspiracy of extortion, according to federal court records posted Friday.
Edward Dubrovsky, 54, is a former chief operating officer and founder of CYPFER, a firm that helps organizations negotiate with ransomware operators. He is charged with conspiring to threaten the confidentiality of information in order to extort money, a violation of federal computer fraud law, and with conspiring to commit Hobbs Act extortion, which involves using threats to obstruct or affect interstate commerce to obtain money. Other details of the case remain sealed.
While the FBI did not publicly announce Dubrovsky’s arrest, the case appears to align with actions taken in the wake of the ShinyHunters’ attack on the FBI’s IT systems, which exposed personal data about thousands of bureau employees. FBI Director Kash Patel said in a social media post that the bureau had arrested “another suspected co-conspirator” of the group, but did not name the suspect. The New York Times reported Friday that a Canadian man was arrested in Pennsylvania in connection with the attack.
When asked for further comment, the FBI pointed CyberScoop to Patel’s social media post.
Dubrovsky’s LinkedIn page lists his role at CYPFER and an affiliation with CyberSteward, which LinkedIn describes as a Toronto-based firm that helps breach victims negotiate ransom payments. Last month, Dubrovsky released a book covering how to deal with ransomware negotiations.
Neither Dubrovsky or CYPFER responded to requests for comment.
The FBI breach has drawn widespread attention. The attack marks a sobering escalation by ShinyHunters, a notorious group that previously targeted major cloud platforms, healthcare organizations, universities, technology companies, retailers and education service providers. Previous victims of ShinyHunters this year include Instructure, Salesforce, Snowflake and McKesson.
Brett Leatherman, the FBI’s assistant director for cyber, said a review found the breach resulted from a third-party platform, where a contractor had not installed a security patch issued for the system. Reuters reported that the contractor worked for Accenture.
Since the breach was disclosed, several suspects have been taken into custody. In September, Dutch authorities arrested a 24-year-old suspected of affiliation with ShinyHunters. Additionally, a teenager, which Reuters identified as Saif Al-din Khader, had been detained and was cooperating with investigators.
Dubrovsky’s case docket states that the case has been moved to the Eastern District of Texas, where Dubrovsky will be detained until a detention hearing is scheduled.
Latest Podcasts
Government
Major rules for federal contractors handling sensitive data are nearing the finish line
FBI, French authorities seize deepfake CSAM-for-sale websites
Alert: FortiBleed remains active campaign, can lock out users or lead to ransomware attacks
Former NSA chief Nakasone says agency overhaul is ‘probably needed’
Technology
Threats
Policy
Wiretapping change sparks big privacy fight in the Golden State
Here’s how experts think CISA should tell agencies to protect OT
National cyber director: Government-industry collaboration vital to managing AI risks, competition with nations
US is looking to weave AI into critical infrastructure for cybersecurity, national cyber director says