Bad OPSEC - How The Feds Traced a Monero User

515,802
0
Published 2024-02-05
In this video I discuss how the hacker responsible for the Vastaamo data breach incident was caught due to numerous OPSEC mistakes and not really any flaws with the Monero protocol.

My merch is available at
based.win/

Subscribe to me on Odysee.com
odysee.com/@AlphaNerd:8

₿💰💵💲Help Support the Channel by Donating Crypto💲💵💰₿

Monero
45F2bNHVcRzXVBsvZ5giyvKGAgm6LFhMsjUUVPTEtdgJJ5SNyxzSNUmFSBR5qCCWLpjiUjYMkmZoX9b3cChNjvxR7kvh436

Bitcoin
3MMKHXPQrGHEsmdHaAGD59FWhKFGeUsAxV

Ethereum
0xeA4DA3F9BAb091Eb86921CA6E41712438f4E5079

Litecoin
MBfrxLJMuw26hbVi2MjCVDFkkExz

All Comments (21)
  • @rulu1828
    Rule 1 of Crime: Don't talk about the crime
  • @unseenxxx
    >tar contained his entire home directory This Finnished him
  • @blackpolygon9306
    The hacker accidentally uploading their home directory is a plot twist that would be called "unbelievable", "lazy wiriting" and similar if it would happen in a movie/show. Literally can't write that stuff.
  • @dshaf7
    Mf was finnish before he even started
  • @lightfox11
    the fact he would actually post his user folder to the internet really shows how sloppy this pos is
  • @bronysrule
    “Only a fool learns from his own mistakes. The wise man learn from the mistakes of others”- Otto Von Bismark
  • @dontbestupid6664
    Scamming sick people who are already spending money they dont have on saving their own lives? How low can you go?
  • @cleoh3
    If this guy wasn't such a showman, and had just contacted vastaamo directly, they probably would have paid right up if it meant it stayed out of the news and the data didn't get released. As soon as the media picks it up, they can't pay because it would be a PR nightmare. Makes you wonder how many companies are extorted by hackers without egos and we never even hear about it.
  • @Onni-
    I think the login for vastaamo was something like admin admin. No wonder they got extorted.
  • @waryth4475
    Poor Monero-chan getting her reputation damaged with this blunder.
  • @Hentai_Protag
    "Even a fish wouldn't have gotten caught if it just kept its mouth closed." - some random guy on the internet
  • @SongOfDeer
    8:24 - We went from "Alright, the guy got a bit cheeky and impatient" to "How was this man even smart enough to hack the database in the first place?" in an instant. Good lord, how does this even happen?
  • @pajeetsingh
    tarred his home folder? he was surely stoned to do that.
  • @maiastniki
    why is it ALWAYS someone telling on themselves????
  • @More_Row
    Deserved arrest. Don't fuck with peoples mental health records or private data like that.
  • @top0657
    One of the biggest mistakes he made (along with the tar fuck up) was that he talked to the police. I read the interrigation documents and were baffeled to see that there were pages after pages on him just casually talking and smart-assing with the police, leading him to straight up admit many of the links in the picture shown in the video. As Finland has a robust western justice system where you need to have proven then suspicion beyond a reasonable doubt I think it might even have been very unlikely to get him convicted without him talking so much.
  • @BillyBob-kj4qq
    Hack snitches telling all their business, sitting in the court and be their own star witness.
  • @ApocDevTeam
    Their security policy was probably "it won't happen to us".
  • @iamfishmind
    heard a hundred thousand facepalms when he said he uploaded his f'ing home folder
  • Vastaamo wasn't an online therapy service, they were a therapist center with multiple locations in alot of major cities in Finland.