DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Atlanta man arraigned on federal charges in connection with an international cyber-fraud scheme

Posted on October 29, 2021 by Dissent

Christian Akhatsegbe has been arraigned on federal charges of wire and computer fraud conspiracy, access device fraud, and aggravated identity theft related to a multi-million-dollar cyber-fraud scheme allegedly perpetrated through email phishing, credential harvesting, and invoice fraud.  Emmanuel Aiye Akhatsegbe, who is believed to be residing in Nigeria, was also charged in the scheme.

“The scope of the defendants’ alleged fraudulent conduct is extraordinary,” said Acting U.S. Attorney Kurt R. Erskine.  “The indictment in this case results from the tireless work of federal law enforcement and the valuable cooperation of corporate investigators and agency victims.  These federal charges also serve as a reminder to those perpetrating cyber and fraud schemes, whether it be from Atlanta or any corner of the globe.”

“This case is an example of our persistent determination to hold criminals accountable no matter how sophisticated their cyber fraud or their geographic location,” said Chris Hacker, Special Agent in Charge of FBI Atlanta. “This indictment would not have been possible without the hard work and cooperation of our federal law enforcement and private sector partners. The FBI would like to remind businesses to remain diligently alert to potential email compromises and fraud schemes.”

According to Acting U.S. Attorney Erskine, the charges, and other information presented in court: Christian Akhatsegbe, Emmanuel Aiye Akhatsegbe, and their conspirators allegedly engaged in a scheme that involved sending phishing emails to victim companies and organizations in the United States and Europe, stealing employee access credentials, and then harvesting the credentials on computer servers.   Some of the phishing emails contained a link to a webpage that was designed to resemble a login page for Microsoft Office but actually captured email account credentials.  Using the stolen credentials, Christian Akhatsegbe, Emmanuel Aiye Akhatsegbe, and their conspirators then allegedly sent emails to other employees at the victim companies and organizations.  The emails contained fake invoices that requested payment of hundreds of thousands of dollars into bank accounts connected to the conspirators.

As an example of this scheme, the indictment alleges that in November 2019, an employee of a company in the United Kingdom received a phishing email, which resulted in their credentials being logged, stolen, and later stored on a computer server that was allegedly accessed and maintained by Christian Akhatsegbe, Emmanuel Aiye Akhatsegbe, and their conspirators.  Using the access credentials stolen from the employee, the conspirators allegedly sent an email to another employee of the company, which appeared to originate from one of the company’s vendors. The email attached a fraudulent invoice in the amount of $434,383.45 with wiring instructions to a bank in Hong Kong.  The victim company later paid the fraudulent invoice and wired the funds to Hong Kong.

In another instance, in December 2019, using credentials stolen from a Massachusetts victim company employee, Christian Akhatsegbe, Emmanuel Aiye Akhatsegbe, and their conspirators allegedly sent an email to another employee of the company, which appeared to originate from one of the company’s vendors. The email attached a fraudulent invoice in the amount of $498,000 and requested that the victim send payment to a bank in Hong Kong.  The victim paid the invoice, together with a second invoice in the same amount, wiring a total of $996,000 to a bank account in Hong Kong.

Christian Akhatsegbe, 35, of Atlanta, Georgia, and Emmanuel Aiye Akhatsegbe, 46, of Lagos, Nigeria, were indicted by a federal grand jury on October 26, 2021.  Members of the public are reminded that the indictment only contains charges.  The defendants are presumed innocent of the charges and it will be the government’s burden to prove the defendants’ guilt beyond a reasonable doubt at trial.

This case is being investigated by the Federal Bureau of Investigation.  Valuable assistance has also been provided by Microsoft Corporation’s Digital Crimes Unit.

Assistant U.S. Attorney Michael Herskowitz, Chief of the Cyber and Intellectual Property Crimes Section, is prosecuting the case together with attorneys from the Department of Justice, Criminal Division, Computer Crime & Intellectual Property Section.

For further information please contact the U.S. Attorney’s Public Affairs Office at [email protected] or (404) 581-6016.  The Internet address for the U.S. Attorney’s Office for the Northern District of Georgia is http://www.justice.gov/usao-ndga.

Source: U.S. Attorney’s Office, Northern District of Georgia

Related posts:

  • Atlanta man sentenced to federal prison in connection with a multi-million dollar international cyber and fraud scheme
Category: ID TheftPhishing

Post navigation

← Retro collectors are uncovering hoards of old data
UK: Tesco worker compensated after supermarket lost 15 years of her medical records →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • DOJ investigates ex-ransomware negotiator over extortion kickbacks
  • Hackers Using PDFs to Impersonate Microsoft, DocuSign, and More in Callback Phishing Campaigns
  • One in Five Law Firms Hit by Cyberattacks Over Past 12 Months
  • U.S. Sanctions Russian Bulletproof Hosting Provider for Supporting Cybercriminals Behind Ransomware
  • Senator Chides FBI for Weak Advice on Mobile Security
  • Cl0p cybercrime gang’s data exfiltration tool found vulnerable to RCE attacks
  • Kelly Benefits updates its 2024 data breach report: impacts 550,000 customers
  • Qantas customers involved in mammoth data breach
  • CMS Sending Letters to 103,000 Medicare beneficiaries whose info was involved in a Medicare.gov breach.
  • Esse Health provides update about April cyberattack and notifies 263,601 people (1)

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Oregon Amends Its Comprehensive Privacy Statute
  • Wisconsin Supreme Court’s Liberal Majority Strikes Down 176-Year-Old Abortion Ban
  • 20 States Sue HHS to Stop Medicaid Data Sharing with ICE
  • Kids are making deepfakes of each other, and laws aren’t keeping up
  • The Trump administration is building a national citizenship data system
  • Supreme Court Decision on Age Verification Tramples Free Speech and Undermines Privacy
  • New Jersey Issues Draft Privacy Regulations: The New

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.