DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Two California Residents Sentenced To Prison For Computer Theft From LendingTree; Former Employee Sold Unauthorized Access

Posted on August 29, 2014 by Dissent

U.S. District Judge Robert J. Conrad, Jr. sentenced two California residents to prison on Tuesday, August 26, 2014, for their role involving computer theft from a nation-wide online mortgage broker (the “company”).

Brian Matthew Rich, 40, of Laguna Beach, Calif., was sentenced to 24 months in prison, followed by two years of supervised release. Marcus Alan Avritt, 42, of Seal Beach, Calif. was sentenced to 15 months in prison and two years of supervised release. Judge Conrad also ordered both defendants to pay restitution to the company, the amount of which will be determined by the court at a later date.

According to filed court documents and court proceedings, Rich and Avritt were the co-owners of Chapman Capital, Inc., a California-based mortgage broker firm also doing business as “Home Loan Consultants.” Court records show that Rich and Avritt purchased unauthorized access to the victim company’s database, which contained data on consumers who had used the company’s online mortgage lending exchange network to apply for new and refinanced mortgage loans, from 2007 until January 2008. According to court records, Rich and Avritt purchased the unauthorized access from another California-based mortgage broker and co-defendant, Steve Kenneth Rosene. Court records indicate that Rosene had obtained the unauthorized computer access from the fourth member of the conspiracy, Jarrod Beddingfield, who was a former employee of the victim company.

According to court records, the victim company’s online mortgage lending exchange network facilitated millions of consumer loan requests for new and refinanced mortgages. Mortgage loan consumers used the internet to access the company’s network and to complete online mortgage application forms containing contact, non-public financial data and other information necessary to the mortgage application process. Court records indicate that the information submitted through this online process comprised the company’s mortgage referral information, known individually as “mortgage leads.” According to court documents, the mortgage referral information, which contained thousands of such individual mortgage leads, was valuable information because it consisted of mortgage loan consumers who were ready, willing and financially-able to close on mortgage loans, refinancing loans and home equity loans, court records show. By obtaining this information without paying the requisite fees and dues, Rich and Avritt avoided paying the victim company an estimated $745,152 for the stolen mortgage leads.

Avrit and Rich pleaded guilty in August and September 2013, respectively, to one count of conspiracy to illegally access and use the company’s customer database. The other two co-defendants, Rosene and Beddingfield, have also pleaded guilty to the same charge. Rosene has also pleaded guilty to one count of unauthorized computer access/exceeded authorized access for commercial advantage and financial gain. Rosene and Beddingfield will be sentenced by the court at a later date.

Avritt and Rich have been released on bond and will be ordered to the report to the Federal Bureau of Prisons upon designation of a federal facility. All federal sentences are served without the possibility of parole.

SOURCE: U.S. Attorney’s Office, Western District of North Carolina

Note: Although the USAO’s press release does not name the victim company, this is the LendingTree breach that was disclosed in April 2008. LendingTree sued other mortgage brokers over the breach, and was also sued by customers. That lawsuit eventually went to binding arbitration. 

No related posts.

Category: Breach IncidentsFinancial SectorHackInsiderU.S.

Post navigation

← NY Man Pleads Guilty to Bank Fraud and Aggravated Identity Theft; Ring Stole 1,800 Wells Fargo Mortgage Files
GA: Bulloch Pediatrics alerts patients to possible security breach after storage units burgled →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Air Force Employee Pleads Guilty to Conspiracy to Disclose Unlawfully Classified National Defense Information
  • UK police arrest four in connection with M&S, Co-op and Harrods cyberattacks (1)
  • At U.S. request, France jails Russian basketball player Daniil Kasatkin on suspicion of ransomware conspiracy
  • Avantic Medical Lab hacked; patient data leaked by Everest Group
  • Integrated Oncology Network victim of phishing attack; multiple locations affected (2)
  • HHS’ Office for Civil Rights Settles HIPAA Privacy and Security Rule Investigation with Deer Oaks Behavioral Health for $225k and a Corrective Action Plan
  • HB1127 Explained: North Dakota’s New InfoSec Requirements for Financial Corporations
  • Credit reports among personal data of 190,000 breached, put for sale on Dark Web; IT vendor fined
  • Five youths arrested on suspicion of phishing
  • Russia Jailed Hacker Who Worked for Ukrainian Intelligence to Launch Cyberattacks on Critical Infrastructure

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • How to Build on Washington’s “My Health, My Data” Act
  • Department of Justice Subpoenas Doctors and Clinics Involved in Performing Transgender Medical Procedures on Children
  • Google Settles Privacy Class Action Over Period Tracking App
  • ICE Is Searching a Massive Insurance and Medical Bill Database to Find Deportation Targets
  • Franklin, Tennessee Resident Sentenced to 30 Months in Federal Prison on Multiple Cyber Stalking Charges
  • On July 7, Gemini AI will access your WhatsApp and more. Learn how to disable it on Android.
  • German court awards Facebook user €5,000 for data protection violations

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.