Update: Mastermind of TJX, Heartland breaches to plead guilty
In deal with prosecutors, Gonzalez faces up to 25 years in prison for TJX data theft
Computerworld - Albert Gonzalez, the man accused of masterminding the massive data thefts at TJX Companies Inc., Heartland Payment Systems and several other retailers has agreed to plead guilty to charges in a 19-count indictment that includes conspiracy, wire fraud and aggravated identity theft charges.
Under an agreement with prosecutors in Boston today, Gonzalez, 28, will face a maximum of 25 years in prison and will forfeit more than $2.8 million in cash.
Gonzalez was arrested in Miami in 2008 along with 10 other individuals. He was indicted separately in federal court in Boston and in New York on charges relating to the thefts at TJX, Dave & Busters, BJ's Wholesale Club, OfficeMax, Boston Market, Barnes & Noble, Sports Authority, Forever 21 and DSW.
Earlier this month, Gonzalez was also indicted in New Jersey on charges that he, along with two unidentified Russian accomplices, was responsible for huge data thefts at Heartland, Hannaford, 7-Eleven Inc. and two other unnamed retailers. Prosecutors alleged that the three were responsible for stealing data on more than 130 million credit and debit cards for the five retailers. Today's plea deal does not include his indictment on these charges.
At the time of the New Jersey indictments, Gonzalez' attorney Rene Palomino had claimed that his client had been close to agreeing to a plea bargain in connection with the charges filed against him in 2008. In an interview with Computerworld, Palomino had said that he was working with federal authorities to hammer out a new plea agreement after the indictments on the Heartland case and other charges.
Palomino had also claimed in an interview with the New York Times that he intended to argue in court that Gonzalez was not the mastermind of the Heartland breach and that it was one of his client's accomplices who had pulled off the heist.
A spokeswoman at the U.S. attorney's office in Boston said she couldn't comment on whether the plea agreement covered the indictments in New York and New Jersey. However the Reuters news service reported that today's agreement does resolve the indictments in New York. It was unclear where Reuters obtained that information, but it would to be consistent with statements that Gonzalez' attorney had made recently about the plea agreement that was being neogotiated before the indictments in New Jersey. Meanwhile, a spokesman for the U.S. attorney's office in New Jersey said today's agreement in Boston does not resolve the charges in New Jersey.
Avivah Litan, a Gartner Inc. analyst who has been following the cases, called the prison term in the proposed plea agreement reasonable. "After all, no one got physically injured or killed, and this was a white collar crime that mainly hurt the card issuing banks, which were able to recoup most -- if not all -- of their losses from the breached retailers," she said.
Massive data thefts
- Update: Mastermind of TJX, Heartland breaches to plead guilty
- Alleged data-heist kingpin is a computer addict, lawyer says
- Gonzalez's lawyer to contend he was not the kingpin of Heartland, Hannaford breaches
- Hacking kingpin negotiating plea deal with feds
- Three indicted for hack attacks on Heartland, Hannaford
- TJX data breach: At 45.6M card numbers, it's the biggest ever
- Google I/O 2013's Coolest Products and Services
- 10 Star Trek Technologies That are Almost Here
- 19 Generations of Computer Programmers
- 25 Must-Have Technologies for SMBs
- A walking tour: 33 questions to ask about your company's security
- 15 social media scams
- The 7 elements of a successful security awareness program
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- IDC Security Infographic From the Era Before security to this current era of empowerment this infographic from Blue coat provides a timeline navigates the rise of...
- Key Drivers: Why CIOs Believe Empowered Users Set the Agenda for Enterprise Security Several years ago, a transformation in IT began to take place; a transformation from an IT-centric view of technology to a business-centric view...
- Security Empowers Business Every magazine article, presentation or blog about the topic seems to start the same way: trying to scare the living daylights out of...
- Business Assureance Technology Infographic IT Leaders See security as barrier to enabling employees. However with new Business assurance technology you are able to give Continuity, Agility, and...
- Live Webcast
Storage Validation at Go Daddy: Best Practices from the World's #1 Web Hosting Provider - Storage Validation at Go Daddy: Best Practices from the World's #1 Web Hosting Provider
- Live Webcast
MFT and FileXpress - An Overview - Business users and applications exchange files on a regular basis. File transfer is a core part of the flow of business activity.
- Live Webcast
Bridging HTTP and FTP with FileXpress Internet Server - What if you could take an FTP server on your internal network, and allow external users (partners or customers) to securely access it...
- Bridging HTTP and FTP with FileXpress Internet Server What if you could take an FTP server on your internal network, and allow external users (partners or customers) to securely access it...
- MFT and FileXpress - An Overview Business users and applications exchange files on a regular basis. File transfer is a core part of the flow of business activity. All Security White Papers | Webcasts