Juan Manuel Gouveia-Aguilera has been sentenced to 8 years in prison for his role in an ATM jackpotting scheme that caused millions in losses. The post Venezuelan Gets Record Federal Prison Term for ATM Jackpotting appeared first on SecurityWeek.

Juan Manuel Gouveia-Aguilera has reportedly received an eight-year federal prison sentence for his involvement in an ATM jackpotting operation. This sentence is described as a record term for this type of crime and follows a scheme that resulted in millions of dollars in losses.
ATM jackpotting is a sophisticated form of theft where criminals manipulate an automated teller machine to dispense cash without using a legitimate bank card or account. This is typically achieved through various methods, including installing malicious software directly onto the ATM's internal computer system, exploiting network vulnerabilities, or physically tampering with the machine to gain access to its internal components. Once compromised, the malware or exploit can command the ATM to eject its entire cash contents.
The technical mechanisms often involve either direct physical access to the ATM's USB ports or network connections to install malware, or remote access gained through phishing, social engineering, or exploiting vulnerabilities in the ATM's operating system or network infrastructure. Specialized tools and software are frequently developed or acquired by criminal groups to facilitate these attacks, allowing them to bypass security measures and control the cash dispenser.
Products in the ATM category, regardless of vendor, are susceptible to such attacks if not adequately secured. Common vulnerabilities that attackers exploit include outdated operating systems, weak network segmentation, insufficient physical security, and a lack of robust anti-malware solutions. The scope of such schemes can be extensive, often targeting multiple machines across different locations or even countries, leading to significant financial losses for banks and financial institutions.
Mitigation strategies for this class of issue typically involve a multi-layered approach. This includes regularly updating ATM operating systems and software, implementing strong network segmentation to isolate ATMs from broader corporate networks, and deploying advanced endpoint protection and anti-malware solutions. Enhanced physical security measures, such as hardened casings and alarm systems, are also crucial. Furthermore, continuous monitoring for suspicious activity and prompt incident response protocols are vital for detecting and neutralizing jackpotting attempts.
This sentencing underscores the ongoing threat posed by organized cybercrime groups targeting financial infrastructure. The significant prison term reflects the severity with which authorities view these sophisticated attacks, which not only result in substantial financial losses but also erode public trust in banking systems. It highlights the global nature of these criminal enterprises and the efforts by law enforcement to combat them through international cooperation and prosecution.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

OpenAI has announced a $1 billion commitment to provide subsidized access to its Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. The initiative, named Daybreak for Frontline Defenders, will offer AI models, training, and technical support over the next six months, prioritizing water and wastewater utilities, electric grid operators, and local government entities. This move aims to equip organizations with limited budgets and staff against increasingly sophisticated cyber threats.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed