惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
DataBreaches.Net
罗磊的独立博客
M
MIT News - Artificial intelligence
G
Google Developers Blog
V
V2EX
D
Docker
博客园_首页
The Cloudflare Blog
人人都是产品经理
人人都是产品经理
Y
Y Combinator Blog
WordPress大学
WordPress大学
T
Tailwind CSS Blog
博客园 - 司徒正美
J
Java Code Geeks
L
LangChain Blog
博客园 - 三生石上(FineUI控件)
B
Blog RSS Feed
博客园 - 【当耐特】
小众软件
小众软件
Apple Machine Learning Research
Apple Machine Learning Research
大猫的无限游戏
大猫的无限游戏
P
Proofpoint News Feed
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
博客园 - Franky

GRAHAM CLULEY

US Coast Guard and FBI board oil tanker to investigate cyber attack Smashing Security podcast #485: These researchers got drunk to hack an LG TV 'Anne Hathaway' admits leading $245 million crypto theft gang that spent a fortune on nightclubs, watches, and luxury cars Smashing Security podcast #484: How websites are tracking you with silence CRPx0 ransomware: what you need to know The US military just turned off ad tracking on its phones. Maybe you should too How a hole in Lenovo's login system let hackers walk into 5,000 Dropbox accounts Smashing Security podcast #483: This AI helps thieves steal your iPhone Revolut scam steals £180,000 from Jersey residents in just four weeks Shai-Hulud hackers: two men charged over TeamPCP's global supply chain crime spree that hit OpenAI, and thousands more US Navy tells sailors and their families: scrub your social media, enemies are watching Smashing Security podcast #482: This hacker leaked GTA 6 - and launched their own cryptocurrency Malicious Firefox add-ons caught stealing cryptowallet seed phrases and browser credentials Gunra ransomware: what you need to know Smashing Security podcast #481: Never say this to a robot dog Prison for data analyst who tried to extort $2.5 million from his employer An "invisible" car? Researcher uses machine learning to hide vehicles from Flock cameras Smashing Security podcast #480: This is the AI service you should never sign up to Meta's Ray-Bans are being banned from pubs, restaurants, and theatres Beware cut-price AI services that read your every word Apple's bug bounty program is drowning in so much AI slop, it is in danger of missing serious exploits Smashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrency Smashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrency Fake IRS letters target cryptocurrency holders The $5 million threat: AI Is supercharging phishing attacks North Korea's elite hackers turned on their own government — and got caught Smashing Security podcast #478: This job interview could destroy your company OpenAI's AI "goes rogue" and hacks Hugging Face: what you need to know Smashing Security podcast #477: How 14 orders of chicken McNuggets helped nail a suspected Russian hacker Ukraine warns fake CAPTCHAs are being used to make you hack yourself
Former AT&T store worker jailed after moonlighting as a S...
Graham CLULEY · 2026-09-15 · via GRAHAM CLULEY

44-year-old Kenneth Carter from Portland, Oregon, used to work in an AT&T retail store. But now he has been sentenced to 16 months in a federal prison.

That should be plenty of time for him to rue the day he agreed to increase his monthly income by helping a SIM swap gang in their attempt to steal over half a million dollars.

According to Carter's own plea agreement, the scam ran from May 2018 to November 2019 and involved at least three co-conspirators alongside Carter.

Carter would use his privileged store access to move a victim's number onto a SIM card under the control of himself or an accomplice.

Once the number was hijacked, one of his co-conspirators would trigger password resets on their victim's online banking accounts, with the two-factor codes and reset links now sent to a phone under the criminals' control rather than that of the victim.

Carter and the others would forward the codes on to a fellow member of the gang who would log into accounts and attempt to wire the money out - usually to a bank account based in Portugal.

In one incident in May 2018, described in Carter's plea agreement, the store employee swapped a victim's number onto an Alcatel handset while working his shift in Portland. A co-conspirator then attempted to wire US $247,652.74 out of the victim's account, only to be foiled by the bank's fraud checks.

On a different occasion in November 2018, after a SIM swap at an AT&T store in Lancaster, California, an attempted transfer was made of US $246,782.70 - which again was foiled.

But not every attempt by the gang to steal from mobile phone users was blocked. In December 2018, Carter successfully hijacked the number of a victim known as "S.Q.T" in Portland, and this time their account was successfully drained of US $99,528.33.

Carter's share of the criminal spoils? A comparatively paltry US $2,000 (he was typically paid between US $1,000 and $2,000 per SIM swap.)

Investigators finally searched Carter's home in November 2019, and found a wealth of sensitive personal data belonging to victims still in his possession, including social security numbers.

Prosecutors told the court that the three victims totalled intended losses of US $593,963.77 - and Carter himself admitted that he had carried out SIM swaps against other AT&T customers too.

If you're wondering why a scheme that ended in 2019 has only just resulted in a prison sentence: Carter wasn't indicted until 2023, four years after his home was searched by the authorities. Cases like this can take time for the authorities to investigate and assemble all the evidence, especially when some members of the conspiracy may still be at large, or may be being separately pursued.

SIM swapping is popular with fraudsters for a very simple reason - it doesn't demand technical prowess. It just needs someone with some social engineering skill to dupe a member of staff (perhaps in a call centre) into helping. Or, in this case, the assistance of an insider from the beginning who isn't afraid to put his retail job and personal liberty at risk for a backhander from a group of criminals.

If your online accounts are still defended by the paper-thin protection of an SMS authentication code, now would be a great time to switch over to using an authentication app or hardware key as an additional layer of defence, and to ask your mobile phone carrier to add a PIN or passcode that must be provided before any SIM change can ever go through.