$ techbeacon▋
Malware

Russian Ex‑Freelancer Hacked 80,000 Gig Workers, Faces Up to 20 Years in U.S. Court

Russian Ex‑Freelancer Hacked 80,000 Gig Workers, Faces Up to 20 Years in U.S. Court

Searzhudin Tamirlanovich Aktulaev, a Russian national, appeared before a federal judge in San Francisco on Monday, charged with running a malware operation that infected approximately 80,000 freelance workers and exposing him to a potential 20‑year prison term.

Authorities say Aktulaev was taken into custody by Cypriot law‑enforcement officials in May 2025 following a coordinated international investigation, and he was transferred to the United States last week under an existing extradition treaty.

The prosecution alleges that the suspect distributed malicious code through popular freelance platforms, disguising the software as legitimate project files. Once installed, the malware granted remote access to victims’ computers, allowing attackers to harvest personal data and, in some cases, deploy ransomware.

Victims spanned multiple countries and relied on gig‑economy income, meaning the breach not only compromised sensitive information but also disrupted their ability to work. The scale of the attack highlights the security vulnerabilities that can exist for independent contractors who often lack dedicated IT support.

U.S. prosecutors are charging Aktulaev under statutes that include the Computer Fraud and Abuse Act, citing the breadth of the intrusion and the financial harm caused. The maximum penalty of 20 years reflects the seriousness with which federal authorities view large‑scale cyber‑crime.

The case underscores growing cooperation between European Union members and U.S. agencies in tackling transnational hacking operations. Cyprus’s swift arrest and extradition demonstrate how diplomatic channels are being leveraged to bring alleged cybercriminals to trial.

Cyber‑security experts note that freelancers are increasingly attractive targets because they often use personal devices and may not receive the same level of protection as employees of larger firms. The upcoming trial could pressure platform operators to adopt stricter vetting procedures and provide better security guidance to users.

Aktulaev is slated for a plea hearing in the coming weeks. Should a conviction be secured, the sentencing will serve as a benchmark for future prosecutions involving widespread malware campaigns against remote workers.

The proceedings arrive amid broader governmental efforts to address the surge in cyber threats aimed at the growing remote‑work and gig‑economy sectors, reinforcing the call for stronger defenses and coordinated law‑enforcement action worldwide.

Source: The Record
Vikas Thakur — Vikas covers DDoS attacks, botnet infrastructure, and network-layer threats. Hands-on experience with mitigation and traffic analysis, covers IoT botnets and infra-level attacks.

Comments (0)

Be the first to comment.

Join the discussion

Protected by reCAPTCHA v3

Related