Hacker Pleaded Guilty to Massive Snowflake Data Theft
Connor Riley Moucka admitted to his role in a global campaign that compromised records of 100 million individuals.
Updated on Sept. 27, 2026 in Cybersecurity

Live Poll
Do you trust that major cloud-based platforms are doing enough to protect your personal information?
On August 10, 2026, Connor Riley Moucka pleaded guilty to charges linked to an extensive hacking campaign that compromised data for over 100 million people. The breach targeted Snowflake cloud accounts that lacked multi-factor authentication.
Why it matters
The case highlights the severe vulnerabilities companies face when failing to enforce basic security measures like multi-factor authentication. By exploiting credentials stolen via infostealer malware, attackers were able to extort millions of dollars from victims.
The attackers targeted Snowflake accounts that bypassed multi-factor authentication and utilized custom tools to identify and exfiltrate sensitive data. Companies suffered total losses of $9.5 million, with at least $2.5 million paid in bitcoin extortion.
The players
Connor Riley Moucka
He is the primary defendant in the hacking case who pleaded guilty to computer and wire fraud charges.
Snowflake
It is a cloud-based data storage company whose customer accounts were targeted by hackers using stolen credentials.
The details
Moucka was part of a campaign that operated from February 2024 to October 2024, using stolen login credentials to access corporate tenant accounts. He faces a maximum of 32 years in prison after pleading guilty to four counts including computer fraud, wire fraud, and aggravated identity theft.
Timeline
The hacking and extortion campaign occurred from February 2024 to October 2024.
Connor Riley Moucka was arrested in Canada in October 2024.
The guilty plea was entered on August 10, 2026.
Sentencing for Connor Riley Moucka is scheduled for October 27, 2026.
The Tech Race
This case underscores the persistent danger of infostealer malware which replaces traditional password security as the primary threat vector for cloud platforms. It signals an escalation in how global authorities prosecute actors behind large-scale, automated corporate credential harvesting.
Users should prioritize enabling multi-factor authentication on all sensitive cloud accounts to prevent unauthorized access via stolen credentials. The scale of this breach emphasizes that data security remains a shared responsibility between service providers and their individual account holders.
The takeaway
The successful prosecution of this case reinforces the critical importance of robust authentication protocols for all digital platforms. Individuals should remain vigilant by using unique, complex passwords and enabling extra security steps to mitigate risks from large-scale credential theft.
What happens next
Connor Riley Moucka is scheduled to face sentencing on October 27, 2026.
Further reading
Learn more about evolving digital threats in our Cybersecurity section.
Source note: This article includes information reported by Computer Crime Research Center.
Live Poll
Do you trust that major cloud-based platforms are doing enough to protect your personal information?







