First Heartbleed 'Hacker' Arrested And Charged

Gman496

Super Moderator
Staff member
A 19-year-old is due in court today charged with stealing information on hundreds of people by exploiting the Heartbleed bug.


rtr3llb1-1-522x293.jpg
Detectives speak to neighbours of Solis-Reyes following his arrest

A man accused of exploiting the Heartbleed bug to steal information on hundreds of people will appear in court later.

Stephen Arthuro Solis-Reyes, 19, is the first person to be charged in connection with the major internet security flaw.
Federal police in Canada say they arrested Solis-Reyes at his home in London, Ontario.

rtr3ll9x-1-522x293.jpg
Solia-Reyes' father, Roberta Solis-Oba, leaves the family home

He has been charged with mischief and the unauthorised use of a computer to steal data from the Canada Revenue Agency's (CRA) website.

Police said Solis-Reyes "extracted private information held by the CRA" by exploiting the security vulnerability.

rtr3kltg-1-522x293.jpg
The CRA website was closed temporarily

The CRA said 900 social insurance numbers - similar to National Insurance numbers - were stolen last week.

Its website was closed for several days as a result.

Police said it took four days to track down the alleged culprit, adding that his computer equipment has been seized and the investigation is ongoing.

rtr3ldxa-1-252x337.jpg
OpenSSL security can be recognised by a padlock icon in a web browser


The so-called Heartbleed flaw in online encryption software OpenSSL allows hackers to eavesdrop on online communications, steal data, impersonate websites and unlock encrypted data.

OpenSSL is commonly used to protect passwords, credit card numbers and other data sent via the internet.

The flaw is understood to have existed for two years, but was only discovered in the past week.

More than half of websites use the software, but not all versions have the same vulnerability.
 
Back
Top