DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

“Stevenkings” charged with creating “Medusa IRC Botnet DDoS” malware used against Bay Area company’s website

Posted on August 9, 2018 by Dissent

SAN JOSE – A federal grand jury in San Jose indicted Travis Cole Malone, Jr., on July 12, 2018, for conspiracy to commit computer fraud and abuse and for causing the transmission of code to damage protected computers, announced United States Attorney Alex G. Tse and Federal Bureau of Investigation Special Agent in Charge John F. Bennett.

According to the indictment unsealed today, Malone, 20, of McAlester, Okla., is alleged to have coded and developed the “Medusa IRC Botnet DDoS” malicious software (“malware”).  When installed on a victim computer, the malware joined the victim computer to a “botnet” that could be used to conduct distributed denial of service (“DDoS”) attacks against websites.  Malone, using the moniker “stevenkings,” advertised the malware on various internet forums.  He then leased access to the botnet to co-conspirators for the purpose of executing DDoS attacks.  The indictment alleges that the malware was used in a January 2016 DDoS attack on the webservers for a San Francisco digital currency company.

Malone was arrested on August 7, 2018, and made his initial appearance in federal court in Muskogee, Oklahoma, yesterday.  Malone was released on bond and his next scheduled appearance is at 1:30 p.m. on September 12, 2018, for an initial appearance in the Northern District of California before U.S. Magistrate Judge Susan van Keulen.

An indictment merely alleges that crimes have been committed, and all defendants are presumed innocent until proven guilty beyond a reasonable doubt. If convicted, the defendant faces a maximum sentence of ten years’ imprisonment, and a fine of $250,000, restitution, and forfeiture, for each violation of 18 U.S.C. § 1030.  However, any sentence following conviction would be imposed by the court after consideration of the U.S. Sentencing Guidelines and the federal statute governing the imposition of a sentence, 18 U.S.C. § 3553.

This case is being prosecuted by the Northern District of California’s Computer Hacking and Intellectual Property Section with the assistance of Elise Etter and Vanessa Quant.  The prosecution is the result of an investigation by the FBI in San Francisco and Muskogee. The FBI received assistance during the investigation from security researchers at Arbor Networks.

Further Information:

Case #: CR 18-0311 BLF

Source: U.S. Attorney’s Office, Northern District of California

Category: Business SectorMalwareU.S.

Post navigation

← Arrested at airport as he was leaving for Serbia: Hacker charged with hacking computer network of Bay area video-game company
Amazon AWS error exposes info on 31,000 GoDaddy servers →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Mysterious leaker GangExposed outs Conti kingpins in massive ransomware data dump
  • Resource: HoganLovells Asia-Pacific Data, Privacy and Cybersecurity Guide 2025
  • Class action settlement following ransomware attack will cost Fred Hutchinson Cancer Center about $52 million
  • Comstar LLC agrees to corrective action plan and fine to settle HHS OCR charges
  • Australian ransomware victims now must tell the government if they pay up
  • U.S. Sanctions Cloud Provider ‘Funnull’ as Top Source of ‘Pig Butchering’ Scams
  • Victoria’s Secret takes down website after security incident
  • U.S. Government Employee Arrested for Attempting to Provide Classified Information to Foreign Government
  • St. Cloud Provides Update on Ransomware Attack in 2024
  • Bradford Health Systems detected abnormal network activity in December 2023. They first sent out breach notices this week.

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Resource: HoganLovells Asia-Pacific Data, Privacy and Cybersecurity Guide 2025
  • She Got an Abortion. So A Texas Cop Used 83,000 Cameras to Track Her Down.
  • Why AI May Be Listening In on Your Next Doctor’s Appointment
  • Watch out for activist judges trying to deprive us of our rights to safe reproductive healthcare
  • Nebraska Bans Minor Social Media Accounts Without Parental Consent
  • Trump Taps Palantir to Compile Data on Americans
  • The US Is Storing Migrant Children’s DNA in a Criminal Database

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.