• Sun. Oct 15th, 2023

Lapsus$: The Turbulent Journey of an Autistic Teen Hacker

Avatar photo

ByEsme Greene

Sep 17, 2023
Lapsus$: The Turbulent Journey of an Autistic Teen Hacker
Esme Greene
Latest posts by Esme Greene (see all)

London’s courtroom drama recently zeroed in on Arion Kurtay, an 18-year-old from Oxford, posited as a ringleader of the infamous Lapsus$ hacking group, notorious for data extortion. Kurtay’s association with a series of high-profile cyberattacks grabbed global headlines, drawing attention to the vulnerabilities even major corporations face against budding hackers.

This young prodigy is implicated in infiltrating the defenses of fintech heavyweight Revolut, ride-hailing titan Uber, and revered game developer Rockstar Games. Autism, a condition Kurtay grapples with, presented complications in his court attendance, necessitating the jury’s deliberation over his culpability in these cyber onslaughts.

The audacity of Kurtay’s actions seemed unbounded. Following his apprehension in 2022, he purportedly breached the cloud storage of the City of London Police. Subsequent collaborations with Lapsus$ cohorts saw formidable entities like Revolut, Uber, and Rockstar Games fall prey to their cyber exploits, with exorbitant ransom demands tailing these breaches.

While confined to house arrest within a hotel’s confines, Kurtay, operating under the guise “teapotuberhacker”, audaciously streamed gameplay from the much-anticipated yet unreleased title, Grand Theft Auto 6. It is suggested that this versatile hacker juggled over a dozen pseudonyms, amassing a fortune exceeding 300 BTC from his cyber ventures, including the notorious SIM-Swapping. However, a combination of gambling misadventures and his own system’s compromise saw most of this illicit fortune dissipate.

Kurtay isn’t a solitary example of adolescent hackers embroiled in Lapsus$’ controversial escapades. Another 17-year-old cohort, who also suffers from autism, faced judgment for the group’s illicit activities.

A U.S. government dossier unveils how Lapsus$ wielded modest means to pinpoint chinks in U.S. institutions’ armor. The group reportedly shelled out a staggering $20,000 weekly to gain illicit access to a telecom provider’s network, facilitating unauthorized interception of phone numbers and the consequent theft of single-use passwords.

However, the group’s reign of terror witnessed a decline last September, following a series of widespread arrests targeting its members across the UK and Brazil.

Further insights from the U.S. Department of Homeland Security depicted Lapsus$ as a ragtag ensemble of teenage hackers, hailing primarily from the UK and Brazil. Operational between 2021-2022, their motivations oscillated between fame, financial gains, and sheer thrill, employing a blend of rudimentary and ingenious hacking methodologies.

 
Avatar photo

Esme Greene

Esme brings a wealth of knowledge and experience to our website, specializing in all aspects of DarkWeb security. With a deep understanding of the intricate workings of the DarkWeb and its associated cybersecurity risks, Esme curates insightful and informative content for our readers.