Cyber Security News

Five Hackers Plead Guilty to ATM Jackpotting Attacks Using Malware to Dispense Cash

Five Venezuelan nationals have pleaded guilty in a U.S. federal case involving attempted ATM jackpotting attacks. This criminal technique uses malware to force cash machines to dispense money without legitimate customer transactions.

The case follows an FBI investigation into attempts to compromise ATMs in Wamego and Manhattan, Kansas, during December 2025. U.S. Attorney Ryan A.

Kriegshauser said banks and financial institutions should take preventative steps as jackpotting incidents continue to increase across the United States.

According to court documents, Luis Alberto Velasquez-Artigas, 27, Royder Adrian Figuera-Perez, 29, Javier Mejia Jr., 27, Gabriel Alexjandro Corales-Garcia, 33, and Italo Lizandro Corrales-Carrillo, 26, pleaded guilty to one count of conspiracy to commit bank larceny.

Hackers Plead Guilty to ATM Jackpotting Attacks

The group allegedly traveled from Indiana to Kansas with plans to target ATMs they believed were more vulnerable to malware-based manipulation.

Their operation involved physically accessing an ATM and attempting to install malicious software. The malware was intended to enable the attackers to remotely issue commands that would force the affected machine to dispense cash.

This attack method is commonly known as jackpotting because criminals attempt to make an ATM release a large amount of currency at once. Unlike card skimming, jackpotting targets the ATM’s internal software, operating system, hardware interfaces, or cash-dispensing components.

In Wamego, the suspects were unable to install the malware. Their efforts triggered an alarm at the ATM, causing law enforcement to respond. The group did not return to collect any money from the site.

The defendants also attempted to compromise an ATM in Manhattan, Kansas. However, the second operation also failed, and the targeted machine did not dispense cash.

Surveillance cameras captured both attempted thefts, helping investigators identify the suspects. Authorities arrested the group several days later.

The FBI warned in a February 2026 report that ATM jackpotting activity is rising nationwide. The agency recorded 1,900 related incidents in the United States since 2020. More than 700 incidents were reported during 2025 alone, resulting in losses exceeding $20 million.

Kriegshauser said the defendants allegedly selected ATMs they believed had design weaknesses that made them more susceptible to malware. He urged banks to invest in security updates and protective technology designed to prevent unauthorized software installation and remote manipulation.

Chris Ormerod, Special Agent in Charge of the FBI Kansas City Field Office, said jackpotting attacks exploit vulnerabilities in ATM technology and can allow criminals to steal cash without completing legitimate transactions.

Velasquez-Artigas received a nine-month prison sentence. The remaining defendants are awaiting sentencing. Assistant U.S. Attorney Jared Maag prosecuted the case, while the FBI led the investigation.

Prevent incidents due to slow investigations. Power your Tier 1 with threat intelligence from 15K SOCs: Integrate TI Lookup in your SOC

Abinaya

Abi is a Security Editor and fellow reporter with Cyber Security News. She is covering various cyber security incidents happening in the Cyber Space.

Recent Posts

Google Chrome 153 Update Fixes 42 Security Flaws, Including 3 Critical Ones

Google has released an important Chrome 153 security update that fixes 42 vulnerabilities across the…

3 hours ago

CISA and NIST Release Technical Checklist for Safeguarding Identity Tokens From Theft and Misuse

The Cybersecurity and Infrastructure Security Agency (CISA) and the National Institute of Standards and Technology…

13 hours ago

CISA Shares 17 Techniques Used by Hackers to Compromise Active Directory Environments

CISA and five international cybersecurity agencies have released detailed guidance describing 17 common techniques hackers…

14 hours ago

Apple Rolls Out Massive Security Update Fixing 273 Vulnerabilities Across Its Devices

Apple has released one of its largest coordinated security rollouts, addressing 273 distinct critical vulnerabilities…

14 hours ago

How to Keep Malware’s Rotating Infrastructure From Becoming a Detection Gap

You can’t detect today's attacks with yesterday’s threat intelligence; that’s how you could briefly formulate…

15 hours ago

Microsoft Bans Its AI Models From Launching Cyberattacks or Escalating Their Own Access

Microsoft has published a draft Humanist AI Code of Conduct that would prohibit its in-house…

15 hours ago