21 year old pleads guilty to hacking court database and multinational corporation
A 21-year-old individual pleaded guilty to hacking the Stark County Criminal Justice Information System (CJIS) and a multinational corporation in Connecticut. The intrusions occurred in 2023 and 2024, involving unauthorized access to sensitive personal and employee data. The attacker used custom programs and malware, employing proxy servers to conceal identity. He also destroyed digital evidence to obstruct the federal investigation. Sentencing is pending, with potential prison time estimated between 21 to 27 months due to mitigating factors.
AI Analysis
Technical Summary
Michael Rogers admitted to computer fraud and destruction of records for unauthorized access to the Stark County CJIS database and a Connecticut-based multinational corporation. Between January and October 2024, he used a custom program to scrape personal data of nearly 300,000 individuals from the CJIS system, rotating IP addresses via proxy servers to evade detection. In 2023, he deployed malware against the corporation to extract over 150,000 employee names, user IDs, and passwords. After media reports, he destroyed devices containing evidence to impede the federal investigation. He pleaded guilty in U.S. District Court and awaits sentencing.
Potential Impact
The breaches resulted in the exposure of sensitive personal information of approximately 300,000 individuals from a court records system and compromised over 150,000 employee credentials from a multinational corporation. The destruction of evidence hindered the federal investigation. The legal consequences for the perpetrator include potential imprisonment and fines. The incidents highlight risks to judicial and corporate data confidentiality and integrity.
Mitigation Recommendations
No direct remediation or patch is applicable as this is a criminal case involving unauthorized access and evidence destruction. Organizations managing similar systems should review and enhance access controls, monitoring, and incident response capabilities. Stark County is pursuing in-house control of CJIS maintenance to prevent future breaches. No further immediate action is required based on this report.
21 year old pleads guilty to hacking court database and multinational corporation
Description
A 21-year-old individual pleaded guilty to hacking the Stark County Criminal Justice Information System (CJIS) and a multinational corporation in Connecticut. The intrusions occurred in 2023 and 2024, involving unauthorized access to sensitive personal and employee data. The attacker used custom programs and malware, employing proxy servers to conceal identity. He also destroyed digital evidence to obstruct the federal investigation. Sentencing is pending, with potential prison time estimated between 21 to 27 months due to mitigating factors.
Reddit Discussion
Michael Rogers, a 21-year-old Canton man, pleaded guilty this week in U.S. District Court to computer fraud and destruction of records for hacking the Stark County Criminal Justice Information System (CJIS) and an unnamed multi-national corporation based in Connecticut.
The Stark County Breach: Between January and October 2024, Rogers used a custom computer program to scrape and query the CJIS database, saving the private personal data of nearly 300,000 individuals onto his hard drive. He used proxy servers to rotate his IP address and disguise his identity.
The Connecticut Breach: In 2023, Rogers deployed malware against a Connecticut-based company to extract sensitive employee information, compromising more than 150,000 corporate user IDs, passwords, and employee names.
Destruction of Evidence: Following media coverage of the data breaches, Rogers destroyed a phone, computer, and hard drive containing crucial digital evidence between June and July 2025 to obstruct the federal investigation.
Rogers entered his guilty plea before Magistrate Judge Jennifer Dowdell Armstrong. The case has been referred to U.S. District Judge Charles E. Fleming for final sentencing.
Maximum Penalties: Computer fraud carries up to five years in prison, while destruction of records in a federal investigation carries a maximum of 20 years. Each charge carries a potential fine of up to $250,000.
Sentencing Guidelines: Due to mitigating factors—specifically his early cooperation and acceptance of responsibility—federal guidelines estimate a likely sentence between 21 to 27 months in prison. A final sentencing date has not yet been scheduled.
Sources:
Links cited in this discussion
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
Michael Rogers admitted to computer fraud and destruction of records for unauthorized access to the Stark County CJIS database and a Connecticut-based multinational corporation. Between January and October 2024, he used a custom program to scrape personal data of nearly 300,000 individuals from the CJIS system, rotating IP addresses via proxy servers to evade detection. In 2023, he deployed malware against the corporation to extract over 150,000 employee names, user IDs, and passwords. After media reports, he destroyed devices containing evidence to impede the federal investigation. He pleaded guilty in U.S. District Court and awaits sentencing.
Potential Impact
The breaches resulted in the exposure of sensitive personal information of approximately 300,000 individuals from a court records system and compromised over 150,000 employee credentials from a multinational corporation. The destruction of evidence hindered the federal investigation. The legal consequences for the perpetrator include potential imprisonment and fines. The incidents highlight risks to judicial and corporate data confidentiality and integrity.
Defensive Guidance
No direct remediation or patch is applicable as this is a criminal case involving unauthorized access and evidence destruction. Organizations managing similar systems should review and enhance access controls, monitoring, and incident response capabilities. Stark County is pursuing in-house control of CJIS maintenance to prevent future breaches. No further immediate action is required based on this report.
Technical Details
- Source Type
- Subreddit
- cybersecurity
- Reddit Score
- 0
- Discussion Level
- minimal
- Content Source
- reddit_link_post
- Post Type
- link
- Domain
- null
- Newsworthiness Assessment
- {"score":27,"reasons":["external_link","established_author","very_recent"],"isNewsworthy":true,"foundNewsworthy":[],"foundNonNewsworthy":[]}
- Has External Source
- true
- Trusted Domain
- false
Threat ID: 6a760e23bf8831d539a727dd
Added to database: 08/07/2026, 16:56:03 UTC
Last enriched: 08/07/2026, 16:56:13 UTC
Last updated: 08/08/2026, 03:11:02 UTC
Views: 10
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.