15 April 2024

Former Amazon engineer sentenced for hacking and crypto theft


Former Amazon engineer sentenced for hacking and crypto theft

Shakeeb Ahmed, a former security engineer at Amazon, has been sentenced to three years in prison for his involvement in hacking two decentralized cryptocurrency exchanges, leading to the theft of digital assets worth over $12 million.

According to court documents, Ahmed took advantage of vulnerabilities in blockchain contracts to carry out theft. He used sophisticated schemes to manipulate pricing data and exploit flaws in smart contracts. Specifically, he targeted Cream Finance and Nirvana Finance, making away with $9 million and $3.6 million, respectively.

Ahmed disguised his hacks as vulnerability research and even attempted to negotiate the return of stolen funds in exchange for substantial “bug bounties.” However, Nirvana Finance ceased operations when negotiations failed to reach an agreement on the return of its assets.

Ahmed utilized elaborate laundering techniques to conceal the origins and ownership of the stolen cryptocurrency, including token-swap transactions, bridging fraud proceeds between different blockchains, and converting funds into Monero, an anonymized cryptocurrency designed to be untraceable.

In addition to the three-year prison term, Ahmed, 34, was sentenced to three years of supervised release. He was also ordered to forfeit approximately $12.3 million, along with a significant quantity of cryptocurrency. Moreover, Ahmed has been mandated to pay restitution to both Cream Finance and Nirvana Finance, totaling over $5 million.


Back to the list

Latest Posts

Cyber Security Week in Review: July 26, 2024

Cyber Security Week in Review: July 26, 2024

In brief: A North Korean hacker indicted for ransomware attacks, French police dismantle the PlugX botnet, and more.
26 July 2024
Stargazer Goblin launch malware distribution-as-a-service via GitHub

Stargazer Goblin launch malware distribution-as-a-service via GitHub

The operation is using over 3,000 fake GitHub accounts.
25 July 2024
North Korean APT45 expanding into financially-motivated operations

North Korean APT45 expanding into financially-motivated operations

The threat actor has been observed targeting critical infrastructure more frequently than other North Korean hackers.
25 July 2024