US soldier pleads guilty to AT&T and Verizon cyberattacks, linked to Snowflake data theft

Image depicting hands typing on a keyboard, with phishing hooks holding files, passwords and credit cards.
(Image credit: Shutterstock / janews)

  • A US Army soldier is facing charges linked to the Snowflake hack
  • The accused faces $500,000 in fines and 20 years behind bars
  • The soldier intends to plead guilty to all charges

A US army soldier accused of two counts of unlawfully transferring confidential phone records has said he intends to plead guilty.

The soldier attempted to “knowingly and intentionally sell and transfer, and attempt to sell and transfer, confidential phone records,” US prosecutors said [PDF].

Cameron John Wagenius, the accused, informed a federal court in Seattle of his plea on Wednesday following his arrest in January 2025. Prosecutors have also found links between Wagenius’ attacks against AT&T and Verizon, with the 2024 Snowflake hack that saw upwards of 150 accounts compromised.

Up to 10 years in prison

Wagenius faces a fine of up to $250,000 and a maximum prison sentence of 10 years for each of the two counts, according to documents filed by his lawyer. Wagenius’ involvement in the Snowflake hacks, alongside Connor Moucka and John Binns, was confirmed by prosecutors in January, who linked methods used the AT&T and Verizon attacks to the Snowflake account breaches.

U.S. attorney Tessa Gorman said the breaches “arise from the same computer intrusion and extortion and include some of the same stolen victim information.” The attack against Snowflake was among the worst cyberattacks of 2024, with corporate accounts linked to AT&T, Santander, and Ticketmaster compromised, with Moucka and Binns reportedly making upwards of $2 million through extortion.

In the underground world, Wagenius used the pseudonym ‘Kiberphant0m’, the same alias that threatened to leak sensitive US government call logs when one of his co-conspirators in the Snowflake attack was arrested.

Kiberphant0m demanded comms with AT&T, writing on a dark web forum that, “In the event you do not reach out to us, [AT&T], all presidential government call logs will be leaked. You don’t think we don’t have plans in the event of an arrest? Think again.”

Moucka, who was arrested in Canada, and Binns, who was arrested in Turkey, are both awaiting extradition to the US, where they face 20 counts of various crimes, including conspiracy, computer fraud and abuse, wire fraud, and aggravated identity theft.

Via TheRegister

You might also like

Benedict Collins
Staff Writer (Security)

Benedict has been writing about security issues for over 7 years, first focusing on geopolitics and international relations while at the University of Buckingham. During this time he studied BA Politics with Journalism, for which he received a second-class honours (upper division), then continuing his studies at a postgraduate level, achieving a distinction in MA Security, Intelligence and Diplomacy. Upon joining TechRadar Pro as a Staff Writer, Benedict transitioned his focus towards cybersecurity, exploring state-sponsored threat actors, malware, social engineering, and national security. Benedict is also an expert on B2B security products, including firewalls, antivirus, endpoint security, and password management.

You must confirm your public display name before commenting

Please logout and then login again, you will then be prompted to enter your display name.

Read more
China
AT&T and Verizon say they're free of Salt Typhoon hacks at last, as further victims identified
Flag of the People's Republic of China overlaid with a technological network of wires and circuits.
Salt Typhoon attacks may have hit more US firms than previously thought
An American flag flying outside the US Capitol building against a blue sky
Chinese cybersecurity firm sanctioned by US Treasury over alleged links to Salt Typhoon hackers
China
Salt Typhoon hackers used this clever technique to attack US networks
Verizon logo on a building with a blue sky above
US Air Force chooses Verizon for network upgrades, despite Salt Typhoon intrusions
China
Chinese hackers who targeted key US infrastructure charged by Justice Department
Latest in Security
Data leak
Top home hardware firm data leak could see millions of customers affected
Representational image depecting cybersecurity protection
Third-party security issues could be the biggest threat facing your business
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Broadcom warns of worrying security flaws affecting VMware tools
Android Logo
Devious new Android malware uses a Microsoft tool to avoid being spotted
URL phishing
HaveIBeenPwned owner suffers phishing attack that stole his Mailchimp mailing list
Ransomware
Cl0p resurgence drives ransomware attacks to new highs in 2025
Latest in News
Buzz Lightyear Space Ranger Spin Rennovations
Disney’s giving a classic Buzz Lightyear ride a tech overhaul – here's everything you need to know
Hisense U8 series TV on wall in living room
Hisense announces 2025 mini-LED TV lineup, with screen sizes up to 100 inches – and a surprising smart TV switch
Nintendo Music teaser art
Nintendo Music expands its library with songs from Kirby and the Forgotten Land and Tetris
Opera AI Tabs
Opera's new AI feature brings order to your browser tab chaos
An image of Pro-Ject's Flatten it closed and opened
Pro-Ject’s new vinyl flattener will fix any warped LPs you inadvertently buy on Record Store Day
The iPhone 16 Pro on a grey background
iPhone 17 Pro tipped to get 8K video recording – but I want these 3 video features instead