This screenshot, provided to CNN by hackers claiming responsibility, shows a hacked website tied to the Russian prison system display messages of support for late Russian opposition leader Alexey Navalny. - Obtained by CNN

This screenshot, provided to CNN by hackers claiming responsibility, shows a hacked website tied to the Russian prison system display messages of support for late Russian opposition leader Alexey Navalny. - Obtained by CNN

CNN: Within hours of opposition leader Alexey Navalny’s death in February in a Russian prison, a group of anti-Kremlin hackers went looking for revenge.

Using their access to a computer network tied to Russia’s prison system, the hackers plastered a photo of Navalny on the hacked prison contractor’s website, according to interviews with the hackers, screenshots and data reviewed by CNN.

“Long live Alexey Navalny!” read a message on the hacked website, accompanied by a photo of Navalny and his wife Yulia at a political rally.

In a stunning breach of security, they also appear to have stolen a database containing information on hundreds of thousands of Russian prisoners and their relatives and contacts, including, the hackers claim, data held on prisoners in the Arctic penal colony where Navalny died on February 16.

The hackers, who say they are a mix of nationalities, including Russian expatriates and Ukrainians, are sharing that data, including phone numbers and email addresses of prisoners and their relatives “in the hope that somebody can contact them and help understand what happened to Navalny,” a hacker claiming to be involved in the breach told CNN.

In addition, the hackers used their access to the Russian prison system’s online commissary, where family members buy food for inmates, to change the prices of things like noodles and canned beef to one ruble, which is roughly $0.01, according to screenshots and videos of purchases from the online store posted by the hackers.

Normally, those goods cost over $1.

It took several hours for the administrator of the online prison shop to notice that Russians were buying food for pennies, according to the hacker involved. And it would be three days before IT staff at the prison shop were able to fully shut down the hacker-provided discounts, according to the hacker’s account.

“We were watching the [access logs to the online store] and it just kept scrolling faster and faster with more and more customers making purchases,” the hacker said in an online chat while providing data to CNN corroborating that they were involved in the hack.

The hackers claim that the database contains information on about 800,000 prisoners and their relatives and contacts. A CNN review of the data found some duplicate entries in the database but that it still contains information on hundreds of thousands of people. CNN was able to match multiple prisoner names in screenshots shared by the hackers with people that, according to public records, are currently in Russian prison.

The online prison shop that the hackers appear to have breached is owned by the Russian state and officially known as JSC Kaluzhskoe, according to Russian business records reviewed by CNN. JSC Kaluzhskoe serves 34 regions in Russia.

CNN has requested comment from JSC Kaluzhskoe, Russia’s Federal Penitentiary Service (known as FSIN) and the individual website administrators that the hackers claim to have outsmarted.

On February 19, the day after the hackers defaced the website and replaced it with Navalny’s photo, JSC Kaluzhskoe posted on Russian social media platform VK that it had experienced a “technical failure” that led to the “prices for food and basic necessities” being “reflected incorrectly.”

Tom Hegel, a cybersecurity expert with experience analyzing data dumps, said the leaked data showed all signs of being authentic and that it had originated from the hacked prison shop.

The hackers “clearly had full blown access to get it all,” Hegel, who is principal threat researcher at US cybersecurity firm SentinelOne. “The amount of images captured and data provided is quite thorough.”

 

Leave a review

In World

Follow us on social networks

News Line