Global Hell hacker to plead guilty, Part I

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS
The ringleader of the infamous hacker clan known as Global Hell is scheduled to plead guilty to one count of conspiracy for "telecommunications fraud" and "computer hacking" next Wednesday, ZDNN has learned. Patrick Gregory, a 19-year-old Houston resident, who goes by the name "MostHateD" on the Net, ran a sophisticated cybergang that borrowed heavily from tactics used in typical street gangs, according to the former US assistant district attorney who led the Global Hell investigation. Gregory was scheduled to make his plea Wednesday, but an "unavoidable circumstance" kept him from making the trip to Dallas, said Matthew Yarbrough, who led the cybercrimes task force on the Global Hell investigation and was the lead prosecutor in the case. Gregory did not return calls for comment.Gregory has promised to cooperate with federal investigators as part of his plea agreement and to take a lie detector test. Five years and $250,000 As a result of his plea agreement, Gregory could face a jail sentence of up to five years and be fined up to $250,000 (£157,000). Under the plea agreement, Gregory admits that the combined losses due to his actions and those of other gH members ranged between $1.5m and $2.5m. However, government lawyers are allowed to file a motion on Gregory's behalf asking the court to lower his sentence "to reflect the defendant's substantial assistance to the government in connection with its continued investigation of the case," court papers say. Officials familiar with the case declined to comment on whether Gregory had provided specific information on criminal acts by other gH members, citing the on-going nature of the investigation. However, sources familiar with the investigation have told ZDNN that other indictments or arrests are expected. Two other gH members have already been convicted of computer-related crimes. The first was 19-year-old Washington state resident Eric Burns, known online as Zyklon, who pleaded guilty in November for defacing the official White House web site. And Chad Davis of Wisconsin, 20, a co-founder of gH known as mindsphar, was sentenced to six months in jail for defacing the US Army's Web site. It's not known whether Gregory will be banned from using computers; Burns is prohibited from using a computer for three years. The court, when officially sentencing Gregory, will make that decision. However, Gregory does have to give up the computers he used during the commission of his crimes, according to court papers. Mother's Day raids Yarbrough, who now works as an e-commerce lawyer for Vinton & Elkins, a Dallas law firm, headed up one of the nation's most extensive computer crime-related raids last year when he drew up search warrants to be served simultaneously against 16 members of Global Hell in 12 different jurisdictions. Those raids took place on Mother's Day and were first reported by ZDNN. News of those raids kicked off a huge online retaliation effort. Many Web sites were defaced denouncing the FBI raids and voicing support for Global Hell. In addition, the FBI's own Web site was targeted by a Denial-of-Service attack. The ferocity of that denial of service attack against the FBI's Web site rendered the site inaccessible by the public. When FBI took the site down to determine the cause of the attacks, the digital underground cheered. Gregory and members of Global Hell, known as "gH," were responsible for breaking into, defacing and destroying data on some 115 sites, according to court papers filed in US District Court in Dallas. Gregory didn't commit or take part in all of those attacks; however, he had some knowledge or participated in some way with the "co-conspirators," the court papers say. In addition, Gregory admitted to stealing certain conference calling codes that allowed him and others to create illegal conference calling "bridges," Yarbrough said, in which "50 to 1,000 hackers would be talking to each other" at the same time. Those conversations eventually led investigators to some of their most damning evidence against gH members, Yarbrough said, because the illegal callers made a "stupid mistake," Yarbrough said. "What they didn't know is that they left the recording function of the conference bridge open when they were in there," Yarbrough said, "and we had a tape of all their conversations. We didn't need a wiretap, it was already there." Not interested at first Ironically, the gH case was "one of those that we didn't want to do anything with," Yarbrough said, "it just didn't seem like a big deal at first." But the attacks wouldn't stop; they were brazen, Yarbrough said and when they found out how extensive the group's membership was, given the evidence gathered from the conference calling tapes, "we knew we had to do something." In addition, the attacks by gH members "just kept coming," not unlike a gang of thugs that vandalises a neighbourhood night after night, Yarbrough said. Yarbrough dubbed gH a "cybergang" citing its gang-like organisation structure and the types of crimes its members indulged in, which included trafficking in stolen credit card numbers and a kind of digital extortion. Members of gH would break into a computer system and Gregory would then come along and say, "'You know, I can stop those rocks coming from your front window and destroying your business if you pay me some money,'" Yarbrough said, "A bunch of different companies got calls like that." From street to cyberspace In an interview with ZDNN last year after the Mother's Day raids, Gregory and other members of gH said the group had "gone legit." In a rambling online interview session, members of gH proclaimed that the raids and their pending consequences essentially had them "scared straight." Though no further Web defacements were attributed to gH members, since they "went legit," however, investigators say that not all illegal activity by gH members stopped after their public declaration. In fact, some investigators say that the denial-of-service attacks launched on the FBI in the aftermath of the Mother's Day raid bear "striking similarities" to the high-profile attacks earlier this year against Yahoo and Amazon.com, among others. Gregory is a known street gang member in the Houston area, Yarbrough said. Gregory had previously told MSNBC.com that he thought of computers as "his way out" of the gang lifestyle and that he planned to make a career out of them. But ZDNN has learned that recently Gregory was involved in what authorities will only describe as "serious gang-related activity." What made gH and Gregory such an interesting case, Yarbrough said, is the way he organised the online group and held it together. Hacker groups are notorious for their flighty memberships and volcanic lifespans, with rosters sometimes changing daily as groups splinter over nothing more complex than a profanity-laden, locker-room style verbal brawl carried out in an online chat room. "These guys (gH) were like a real gang, like Crips or Bloods," Yarbrough said. This is "very unusual for hackers," said Yarbrough, who has had extensive experience investigating and tracking online crime. Gregory "was really able to apply a lot of the street mentality, traditional physical world gang [experience] to the cyberworld," he said. Take me to Part II Take me to Hackers It's time to take a stand -- Steven Vaughan-Nichols has some tricks of the trade to slow down denial-of-service attacks. Go to AnchorDesk UK to read the news comment. What do you think? Tell the Mailroom. And read what others have said.

Talkback

I think Global Hell is just one of the groups that have hacked into resources and internet pages and stuff, but the hackers are unstoppable. More and more kids are going into computers, studying the technology and how to use it. Many of these kids are using the internet as a sandbox, so they think they can mess around with it and not get in trouble. The reason why adults are not capable of stopping the teens is because the technology came at the time of their birth. Sooner or later, Global Hell is going to be revived, despite the jail sentences given as warnings. You may know that some people can keep their info hidden very well, as I can, but I don't hack. As I am a 12 year old, I think that if you want to beef up security, teach your kids NOT to mess around with the computer, but to protect it and not hack it. This way future generations may not be able to hack into YOUR computers. Hackers have one thing they actually want: To get into public and make them known and feared. If none of this advice is kept, computer failures may be one of the top crimes in history.

via Facebook 2 May, 2006 07:17
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

GHar123

I totally dislike pirating of works, I fear that artists will be deterred from creating works if they think that they are going to get ripped off....

60 minutes ago by GHar123 on ACTA stumbles in Germany
JCB33

How dare film makers, artists or anybody that invests in creativity stop us pirating their works for free. I want to be able to walk into my local...

7 hours ago by JCB33 on ACTA stumbles in Germany
Moley

@GrueMaster. I prefer horses for courses rather than one size fits all. I, and I suspect most other computer users, do not really wish to have...

9 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
greycynic

The product that scares me every time I have to use it is the Office 2007 version of Excel. The first bug that I found was applying the median...

9 hours ago by greycynic on Ten flawed products that derail productivity
GrueMaster

Nice review and very informative. One thing I'd like to add (in reply to whs001's 1st question), the main reason to have the same interface from...

10 hours ago by GrueMaster on A tale of two distros: Ubuntu and Linux Mint
Frederick Wrigley

I'be been using Mint 12 since the RC came out, and I am far more happy with the Cinnamon, the Mate, and, yes (with extensions), theGnome 3...

11 hours ago by Frederick Wrigley via Facebook on A tale of two distros: Ubuntu and Linux Mint
bdantas

Excellent article. One small correction, though--although a fresh installation of Linux Mint 12 will, indeed, provide the user with a version of...

12 hours ago by bdantas on A tale of two distros: Ubuntu and Linux Mint
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

12 hours ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Alan Ralph

In related news, the ISPs club together to get the members of the Home Affairs Select Committee (ya goofed on that part, ZDNet UK) copies of "The...

12 hours ago by Alan Ralph via Facebook on MPs urge ISPs to take down terrorist material
Moley

For Gnome 2 die-hards, it is possible to add icons to the bottom panel (or top top panel, if you prefer) which provide the exact Gnome 2...

13 hours ago by Moley on A tale of two distros: Ubuntu and Linux Mint
ramwellian

Your comments would seem pretty naive and immature. Your 'solution' appears to be, "gee, let's all just give in to the hackers and give them...

13 hours ago by ramwellian on Cloud computing security: no more oxymoron?
BugStalker

"Interesting thought ... If you installed Win7 as a dual boot on a machine that previously only had Linux, and it wrecked your Linux installation,...

14 hours ago by BugStalker on Windows 7 Declares War on GRUB
whs001

This is an excellent summary of Ubuntu and Mint and the interface differences between them. Most such articles take a very partisan position for...

14 hours ago by whs001 on A tale of two distros: Ubuntu and Linux Mint
Moley

@ewallace. Not so clear. Anyone can obtain the text, for example from here http://www.ustr.gov/webfm_send/2379. I support ACTA so long as it and...

14 hours ago by Moley on ACTA: Facts, misconceptions and questions
45283

I think WinRT is fantastic. I just wish it was an option for people that didn't want to go through Microsoft's App Store with its attendant...

17 hours ago by 45283 on Why Windows 8 needs architectural hygiene for WOA
Burn-IT

Nine people? £30m? Who's back pocket is that lot going in? And IF they say it is for new buildings, what about all the ones the government has...

18 hours ago by Burn-IT on Police set to launch three £30m e-crime hubs
ewallace

Just to be clear, nobody knows what is in the text of ACTA, here is a photograph of the text of ACTA http://twitpic.com/8h9iju as submitted to the...

18 hours ago by ewallace on ACTA: Facts, misconceptions and questions
fgvrg56

Unfortunately main issue is that ASUS is refusing to accept that they make some mistake on this version of asus Transformer prime. 1 - GPS sensor...

20 hours ago by fgvrg56 on Asus Eee Pad Transformer Prime Wi-Fi & GPS problems?
Ben Woods

@Marcus A fair question. Just talked with Archos which said it was working on an announcement for next week....

21 hours ago by Ben Woods on Archos confirms G9 Ice Cream Sandwich update schedule
Marcus Karlsson

Any update on this, considering the claimed "first week of February"?

22 hours ago by Marcus Karlsson via Facebook on Archos confirms G9 Ice Cream Sandwich update schedule