Home / Software & Gaming / Security / The first Heartbleed hacker has been arrested

The first Heartbleed hacker has been arrested

The Heartbleed bug has been around for a couple of years but it caused quite a stir when it was publicly revealed last week. However, there had been no reports of people abusing the bug until now, a Canadian hacker has become the first person to get arrested for abusing the Heartbleed bug.

The Canadian used the bug to steal information from the government's tax website, during the attack he managed to get his hands on 900 social security numbers as well as other tax payer information. CRA Commissioner, Andrew Treusch, gave a statement: “The CRA worked around the clock to implement a ‘patch' for the bug, vigorously test all systems to ensure they were safe and secure, and re-launch our online services. The CRA is one of many organizations that was vulnerable to Heartbleed, despite our robust controls.”

heartbleed

Stephen Solis-Reyes is just 19 years old, he was taken in to custody yesterday. His computer equipment was seized and he currently faces criminal charges of unauthorized use of computer and mischief in relation to data. Around 500,000 websites were open to exploitation thanks to the Heartbleed bug, however, most websites, especially the big ones like Google, have patched the hole.

Discuss on our Facebook page, HERE.

KitGuru Says: We don't know if Stephen Solis-Reyes did anything with the information he obtained but we will likely find out soon. 

Source: BBC, Cnet

Become a Patron!

Check Also

Marvel Rivals has a major security issue enabling Remote Code Execution

A Remote Code Execution exploit has been discovered in Marvel Rivals, allowing hackers to remotely spread malware through the game.

One comment

  1. Thanks for the report. It’s one thing for hackers to “play” the corporate games and help companies rip each other off in the name of financial greed, but when they are stealing directly from innocent people that is very serious. Nothing can ruin a person financially like identity theft. I hope this hacker gets at least five years federal time. A good price to pay for being dumb enough to attack a government website. Did he think the CRA, RCMP and CSIS wouldn’t have the resources to track him down?

We've noticed that you are using an ad blocker.

Thank you for visiting KitGuru. Our news and reviews teams work hard to bring you the latest stories and finest, in-depth analysis.

We want to be as informative as possible – and to help our readers make the best buying decisions. The mechanism we use to run our business and pay some of the best journalists in the world, is advertising.

If you want to support KitGuru, then please add www.kitguru.net to your ad blocking whitelist or disable your adblocking software. It really makes a difference and allows us to continue creating the kind of content you really want to read.

It is important you know that we don’t run pop ups, pop unders, audio ads, code tracking ads or anything else that would interfere with the KitGuru experience. Adblockers can actually block some of our free content, such as galleries!