Go offline with the Player FM app!
Hacker or hacked?
Manage episode 505463524 series 2535026
The journey of Alberto Daniel Hill, also known as @ADanielHill, is a complex narrative that intertwines his expertise in cybersecurity, a controversial arrest and conviction, his fight for digital justice, and his subsequent influence as a thought leader and author.
Professional Background and Initial Discovery:Alberto, a 41-year-old Uruguayan, dedicated over 20 years to the field of computing, specializing in security. Holding an engineering degree, a master's in computing, and certifications like PMP and Certified Ethical Hacker, he worked as a security consultant for the Uruguayan government for four years, performing system audits and malware investigations. He also collaborated with Interpol on digital forensics and is a recognized expert in cryptocurrencies. Driven by an innate curiosity, he would often find and report vulnerabilities in websites. In 2015, while helping his girlfriend access a medical provider's website in Montevideo, he discovered a critical vulnerability: he could log in as an administrator using "admin" for both username and password, gaining access to extensive medical, personal, and financial data. He immediately reported this severe flaw (rated 10 out of 10) to CERT Uruguay, a government-run computer emergency readiness team, and assumed it would be fixed.
The Hack, Arrest, and Coerced Confession:Two years later, in February 2017, the same medical institution was hacked, and patient records were stolen. The hacker sent a ransom email, demanding 15 Bitcoins and threatening to publish sensitive patient data. Seven months later, police, in "Operation Bitcoins," traced the extortion email's IP address to Alberto's apartment in Montevideo. Alberto was called to the police station and, upon realizing it was about the medical provider, felt relieved, thinking it concerned his earlier report. He openly explained how he had found the "admin/admin" vulnerability. However, the police then presented the extortion email, claiming it was sent from his IP. Despite his denials, he was detained.
The next day, police raided his apartment, seizing a vast array of items they deemed "hacker paraphernalia": $1,400 USD, €8,000, 13 hard drives, seven laptops, ten cell phones, credit card cloners, blank cards, an Anonymous mask, and even his pet cactus, Walter, and a paper cutter the police mistook for a guillotine. Alberto tried to explain that these were for research, collecting, or professional purposes, but his explanations were ignored by officers who lacked technical knowledge. Under intense psychological pressure and threats to raid his mother's house and harass his girlfriend,
628 episodes
Manage episode 505463524 series 2535026
The journey of Alberto Daniel Hill, also known as @ADanielHill, is a complex narrative that intertwines his expertise in cybersecurity, a controversial arrest and conviction, his fight for digital justice, and his subsequent influence as a thought leader and author.
Professional Background and Initial Discovery:Alberto, a 41-year-old Uruguayan, dedicated over 20 years to the field of computing, specializing in security. Holding an engineering degree, a master's in computing, and certifications like PMP and Certified Ethical Hacker, he worked as a security consultant for the Uruguayan government for four years, performing system audits and malware investigations. He also collaborated with Interpol on digital forensics and is a recognized expert in cryptocurrencies. Driven by an innate curiosity, he would often find and report vulnerabilities in websites. In 2015, while helping his girlfriend access a medical provider's website in Montevideo, he discovered a critical vulnerability: he could log in as an administrator using "admin" for both username and password, gaining access to extensive medical, personal, and financial data. He immediately reported this severe flaw (rated 10 out of 10) to CERT Uruguay, a government-run computer emergency readiness team, and assumed it would be fixed.
The Hack, Arrest, and Coerced Confession:Two years later, in February 2017, the same medical institution was hacked, and patient records were stolen. The hacker sent a ransom email, demanding 15 Bitcoins and threatening to publish sensitive patient data. Seven months later, police, in "Operation Bitcoins," traced the extortion email's IP address to Alberto's apartment in Montevideo. Alberto was called to the police station and, upon realizing it was about the medical provider, felt relieved, thinking it concerned his earlier report. He openly explained how he had found the "admin/admin" vulnerability. However, the police then presented the extortion email, claiming it was sent from his IP. Despite his denials, he was detained.
The next day, police raided his apartment, seizing a vast array of items they deemed "hacker paraphernalia": $1,400 USD, €8,000, 13 hard drives, seven laptops, ten cell phones, credit card cloners, blank cards, an Anonymous mask, and even his pet cactus, Walter, and a paper cutter the police mistook for a guillotine. Alberto tried to explain that these were for research, collecting, or professional purposes, but his explanations were ignored by officers who lacked technical knowledge. Under intense psychological pressure and threats to raid his mother's house and harass his girlfriend,
628 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.