Blackshades mastermind sentenced to almost five years in prison

Swedish Co-Creator Of Blackshades RAT was sentenced by the US authorities to 57 months in prison. Another success of the law enforcement against cybercrime.

A New York federal court sentenced Alex Yücel (a.k.a. “marjinz“), a Swedish man, who is the alleged mastermind behind the BlackShades Remote Access Tool (RAT). BlackShades is a popular RAT in the criminal underground that infected more than 500,000 computers worldwide. Yücel was sentenced to almost five years in a U.S. prison on Tuesday.

BlackShades allow to gain complete control over the victim’s machine, it was designed to spy on victims by stealing user credentials and sensitive data, capturing keystrokes and instant messaging messages, and much more.

BlackShades 3BlackShades 3

The 25 years-old Alex Yücel managed the “BlackShades” criminal ring that offered the notorious RAT to several thousands of criminals and customers in more than 100 countries. Yucel is the co-author of the BlackShades RAT, the other developer is the US man Michael Hogue, who already pleaded guilty to the same accusation. Hogue is scheduled to be sentenced on July 24.

The RAT was typically advertised on several hacking forums and “marketed as a product that conveniently combined the features of several different types of hacking tools.”

The BlackShades was very cheap, it was offered for a price ranging from $40 to $50. In 2012, Citizen Lab and EFF reported the notorious Blackshades was used in targeted attacks against the opposition forces in Syria.

According to the U.S. Department of Justice, Yucel was sentenced to four and three-quarter years in prison by U.S. District Judge Kevin Castel after pleading guilty in February. The man was also sentenced to a penalty of $200,000.

Yucel has already served 13 months in New York prison and one month in Moldova custody, where was jailed after its arrest in November 2013.

The man said he was sorry for his crime, asked the judge for leniency.

“I deeply regret starting this [BlackShades] whole project, which obviously went out of control,” Yücel said.

However, Castel sentenced him to 57 months behind bars along with a penalty of $200,000, saying that “the message must go forth that this is a serious crime.”

“We rely on our computers as an extension of how we live our lives,” Castel said in a press release. “This is spreading misery to the lives of thousands [of online people]. That’s what this is.”

Last year, a joint effort of law enforcement from Europe and US allowed authorities to identify and arrest more than 100 individuals involved in the development and commercialization of the BlackShades RAT.

Law enforcement also seized 1,900 command and control (CnC) domains.

Pierluigi Paganini

(Security Affairs – BlackShades, cybercrime)

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

Security Affairs newsletter Round 528 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best…

2 hours ago

Palo Alto Networks fixed multiple privilege escalation flaws

Palo Alto Networks addressed multiple vulnerabilities and included the latest Chrome patches in its solutions.…

1 day ago

Unusual toolset used in recent Fog Ransomware attack

Fog ransomware operators used in a May 2025 attack unusual pentesting and monitoring tools, Symantec…

1 day ago

Paraguay Suffered Data Breach: 7.4 Million Citizen Records Leaked on Dark Web

Resecurity researchers found 7.4 million records containing personally identifiable information (PII) of Paraguay citizens on…

2 days ago

Apple confirmed that Messages app flaw was actively exploited in the wild<gwmw style="display: none; background-color: transparent;"></gwmw>

Apple confirmed that a security flaw in its Messages app was actively exploited in the…

2 days ago