DraftKings hacker 'Snoopy' sentenced to 18 months in prison
Audit account security, enforce multi‑factor authentication, and monitor for credential‑stuffing activity.
Audit account security, enforce multi‑factor authentication, and monitor for credential‑stuffing activity.
Summary
DraftKings’ November 2022 cyberattack, which compromised 60,000 user accounts, has culminated in the 18‑month prison sentence of 21‑year‑old Nathan Austad, alias ‘Snoopy’, on June 24, 2026. Austad, who operated a dark‑web shop that sold access to compromised accounts, added payment methods to 1,600 accounts and stole $600,000 before the company’s initial disclosure. DraftKings first reported the breach in November 2022, noting that less than $300,000 had been stolen from customers, and later revealed that 67,995 accounts were compromised. In December 2025 Austad pleaded guilty to conspiracy to commit computer intrusion, and in May 2023 U.S. authorities charged Joseph Garrison for selling access through the “Goat Shop.” By January 2024 prosecutors charged additional suspects, including Kamerin Stokes (“TheMFNPlug”) and Austad himself, who operated a shop named after the Peanuts character. Austad’s cryptocurrency accounts received approximately $465,000 in assets, and he was ordered to forfeit $463,684 and pay $1,327,061 in restitution. The sentencing underscores the severity of credential‑stuffing attacks that exploit weak or reused passwords on platforms that handle large volumes of user data. The case serves as a reminder for security teams to enforce multi‑factor authentication and monitor for suspicious account activity.
Key changes
- 18‑month prison sentence for Nathan Austad (Snoopy) on June 24, 2026
- 60,000 DraftKings accounts compromised, 1,600 accounts had added payment methods
- $600,000 stolen; Austad’s crypto accounts received $465,000
- Austad ordered to forfeit $463,684 and pay $1,327,061 restitution
- DraftKings disclosed breach in Nov 2022; 67,995 accounts compromised
- Joseph Garrison charged in May 2023 for selling access via “Goat Shop.”
- Additional suspects charged in Jan 2024, including Kamerin Stokes (“TheMFNPlug”).
- Case highlights credential‑stuffing attacks exploiting weak passwords on large platforms.