AT&T, Verizon breach mastermind "kiberphant0m" pleads guilty to cybercrime charges

He faces up to 27 years in prison.

1comment
AT&T and Verizon logos.
A former Army soldier admitted guilt on Tuesday in connection with a string of cyberattacks and extortion attempts targeting telecommunications companies, including AT&T and Verizon.

The Justice Department revealed that 21-year-old Cameron John Wagenius, who used the aliases "kiberphant0m" and "cyb3rph4nt0m" on various forums, had been involved in years of malicious activity, some of which occurred while he was still serving in the military.

You probably recall the story – Wagenius was arrested in December 2024. He went from Army communications specialist to cybercriminal mastermind, leaking AT&T and Verizon call logs, selling SIM-swapping services, and even running a botnet for DDoS attacks. He was caught near a Texas base after boasting about posting Trump's call records and threatening to dump NSA data online.

Wagenius pleaded guilty to charges of conspiracy to commit wire fraud, extortion related to computer fraud, and aggravated identity theft. He now faces a possible sentence of up to 27 years in federal prison, with sentencing scheduled for October 6. He had previously admitted to two counts involving the unlawful transfer of confidential phone record information connected to the same scheme.


– Allison Nixon, chief research officer at Unit 221B for CyberScoop, July 2025

According to investigators, Wagenius and his accomplices sought to defraud at least 10 organizations by stealing login credentials and exploiting network access. Court documents show that in November, he attempted to extort $500,000 from a major telecommunications company by threatening to release sensitive call data belonging to high-ranking officials.

Is a 27-year sentence too harsh of a penalty?



Authorities said that the stolen information included phone and text records obtained through breaches of cloud environments such as Snowflake. AT&T confirmed in July that its Snowflake environment was compromised in April, leading to the theft of six months' worth of call and text data affecting nearly all of its customers.

Two alleged co-conspirators, Connor Moucka and John Binns, were indicted in November for similar crimes involving breaches of multiple organizations' cloud systems. Moucka, a Canadian national, agreed to extradition to the United States earlier this year to face 20 federal charges tied to attacks that impacted as many as 165 Snowflake customers.

Investigators who examined Wagenius' devices discovered thousands of stolen identification documents and substantial cryptocurrency holdings, suggesting the proceeds of multiple fraud schemes. Officials believe the group attempted to extort at least $1 million and sold portions of the stolen data to fund additional criminal activity, including SIM-swapping operations.

Get a Motorola Razr 2025 for just $199.99!

Switch to a 2-month Total 5G or 5G+ plan with Total Wireless and score this foldable deal.


We may earn a commission if you make a purchase

Check Out The Offer
Did you enjoy this article?
Еxplore more with a FREE members account.
  • Access members-only articles
  • Join community discussions
  • Share your own device reviews
  • Manage your newsletter choices
Register For Free
Loading Comments...

Latest Discussions

Recommended Stories

FCC OKs Cingular\'s purchase of AT&T Wireless