Crime Dark Web ‘BreachForums’ Operator Charged With Computer Crime

  • 🐕 I am attempting to get the site runnning as fast as possible. If you are experiencing slow page load times, please report it.
(https://www.bloomberg.com/news/arti...chforums-operator-charged-with-computer-crime)
(https://archive.ph/0pUXW)

9551e85cf3b9269e8e181665211a60edcdfd46fe.png

Federal agents have arrested a Peekskill, New York, man they say ran the notorious dark web data-breach site “BreachForums” under the name “pompompurin.”

Conor Brian Fitzpatrick was arrested by a team of investigators at his home around 4:30 p.m. Wednesday, FBI Special Agent John Longmire said in a sworn statement filed in court the next day. Fitzpatrick is charged with a single count of conspiracy to commit access device fraud.

BreachForums hosted the stolen databases of almost 1,000 companies and websites. The databases often includes personal information, such as names, emails and passwords. The information is offered for sale by users of the site and can be used for fraud. Pompompurin’s profile on BreachForums describes him as “Bossman.”

Longmire, a 16-year FBI Agent who said he had led the agents in the arrest, said Fitzpatrick admitted he had used the alias “pompompurin” and was the owner and operator of BreachForums.

Fitzpatrick, who was released on bond, didn’t immediately respond to a request for comment. Benjamin Gold, a lawyer who represented him in his court appearance, declined to comment.

A local newspaper listed Fitzpatrick among the 2021 graduates of Peekskill High School. A local news station posted video of FBI and Homeland Security agents, working with local police, raiding a home in Peekskill on Wednesday and carrying bags of possible evidence from the house. The report didn’t identify Fitzpatrick as the target, but the address is the one listed in online records as the house where he lived with his parents.

Cybersecurity Investigators

Fitzpatrick had been closely scrutinized by cybersecurity investigators for more than a year, and was considered a significant player in the cybercrime ecosystem, according to multiple people familiar with the situation who asked not to be identified because the information isn’t public.

RaidFourms, the spiritual precursor to BreachForums, was sized by the Federal Bureau of Investigation in April 2022.

“Breach Forums is one of, if not the most active, hacker forums out there,” said Allan Liska, a senior intelligence analyst at cybersecurity firm Recorded Future. “They are well-known for leaking sensitive information stolen from major organizations around the world including the Robinhood trading platform and Acer Computers.”

BreachForums was founded after the shutdown of RaidForums, “specifically with the goal of carrying on the work started at Raid,” Liska said. “Pompompurin ran the forum and actively encouraged the hack and leak activities that occurred there.”

In November 2021, Pompompurin claimed responsibility for sending out fake emails that originated from an “fbi.gov” email address. Pompompurin claimed responsibility for the breach in an interview with Brian Krebs.

Details of the charges, filed in federal court in Alexandria, Virginia, have not been made public. A spokeswoman for the US Attorney in Alexandria didn’t return phone and email messages seeking comment.

Fitzpatrick was presented in federal court in White Plains, New York, and released on a $300,000 unsecured bond, signed by his parents. Fitzpatrick is required to avoid any contact with codefendant, coconspirators and witnesses in the case. He’s due to appear in court in Alexandria on March 24.

The case is US v. Fitzpatrick, 23-cr-2171, US District Court, Southern District of New York (Manhattan).
 
In November 2021, Pompompurin claimed responsibility for sending out fake emails that originated from an “fbi.gov” email address. Pompompurin claimed responsibility for the breach in an interview with Brian Krebs.
Sigh. Any nigger can spoof mail from anywhere else, I used to do this for shits and giggles years ago. Spoofing a send address is not a breach.
 
The U.S. Federal Bureau of Investigation (FBI) this week arrested a New York man on suspicion of running BreachForums, a popular English-language cybercrime forum where some of the world biggest hacked databases routinely show up for sale. The forum’s administrator “Pompompurin” has been a thorn in the side of the FBI for years, and BreachForums is widely considered a reincarnation of RaidForums, a remarkably similar crime forum that the FBI infiltrated and dismantled in 2022.

1679184605511.png


In an affidavit filed with the District Court for the Southern District of New York, FBI Special Agent John Langmire said that at around 4:30 p.m. on March 15, 2023, he led a team of law enforcement agents that made a probable cause arrest of a Conor Brian Fitzpatrick in Peekskill, NY.

“When I arrested the defendant on March 15, 2023, he stated to me in substance and in part that: a) his name was Conor Brian Fitzpatrick; b) he used the alias ‘pompompurin/’ and c) he was the owner and administrator of ‘BreachForums’ the data breach website referenced in the Complaint,” Langmire wrote.

Pompompurin has been something of a nemesis to the FBI for several years. In November 2021, KrebsOnSecurity broke the news that thousands of fake emails about a cybercrime investigation were blasted out from the FBI’s email systems and Internet addresses.

Pompompurin took credit for that stunt, and said he was able to send the FBI email blast by exploiting a flaw in an FBI portal designed to share information with state and local law enforcement authorities. The FBI later acknowledged that a software misconfiguration allowed someone to send the fake emails.

In December, 2022, KrebsOnSecurity broke the news that hackers active on BreachForums had infiltrated the FBI’s InfraGard program, a vetted FBI program designed to build cyber and physical threat information sharing partnerships with experts in the private sector. The hackers impersonated the CEO of a major financial company, applied for InfraGard membership in the CEO’s name, and were granted admission to the community.

From there, the hackers plundered the InfraGard member database, and proceeded to sell contact information on more than 80,000 InfraGard members in an auction on BreachForums. The FBI responded by disabling the portal for some time, before ultimately forcing all InfraGard members to re-apply for membership.

More recently, BreachForums was the sales forum for data stolen from DC Health Link, a health insurance exchange based in Washington, D.C. that suffered a data breach this month. The sales thread initially said the data included the names, Social Security numbers, dates of birth, health plan and enrollee information and more on 170,000 individuals, although the official notice about the breach says 56,415 people were affected.

In April 2022, U.S. Justice Department seized the servers and domains for RaidForums, an extremely popular English-language cybercrime forum that sold access to more than 10 billion consumer records stolen in some of the world’s largest data breaches since 2015. As part of that operation, the feds also charged the alleged administrator, 21-year-old Diogo Santos Coelho of Portugal, with six criminal counts.

Coelho was arrested in the United Kingdom on Jan. 31, 2022. By that time, the new BreachForums had been live for just under a week, but with a familiar look.

BreachForums remains accessible online, and from reviewing the live chat stream on the site’s home page it appears the forum’s active users are only just becoming aware that their administrator — and the site’s database — is likely now in FBI hands:

1679184626962.png


“Wait if they arrested pom then doesn’t the FBI have all of our details we’ve registered with?” asked one worried BreachForums member.

“But we all have good VPNs I guess, right…right guys?” another denizen offered.

“Like pom would most likely do a plea bargain and cooperate with the feds as much as possible,” replied another.

Fitzpatrick could not be immediately reached for comment. The FBI declined to comment for this story.

There is only one page to the criminal complaint against Fitzpatrick (PDF), which charges him with one count of conspiracy to commit access device fraud. The affidavit on his arrest is available here (PDF).

[Article | Archive]
 
Didn't expect anyone involved in this would be living in a first world country tbh
I know it's wrong to say it's a first world country, but Teapot was British and lived in England. He had also been busted a couple years prior to the GTA hack for hacking, that's how his dox was out there in the first place.

Same with several Lizard Squad members, but they were script kiddies. Though it's always surprising when people have the funds to move to countries that will reward them for their exploits, but stick in first world shitholes.
 
Back