LmCast :: Stay tuned in

Romanian gets 5 years in prison for hacking Oregon govt network

Recorded: May 28, 2026, 1:03 p.m.

Original Summarized

Romanian gets 5 years in prison for hacking Oregon govt network

News

Featured
Latest

Glassworm botnet disrupted after resilient C2 infrastructure takedown

CISA gives feds 4 days to patch actively exploited cPanel plugin flaw

Windows 11 KB5089573 update released with performance improvements

Charter confirms data breach after ShinyHunters extortion threat

Romanian gets 5 years in prison for hacking Oregon govt network

Webinar: Why network incidents take too long to resolve

Own 2TB of lifetime FileJump storage while it’s only $75 through May

Carnival Cruise confirms data breach affecting nearly 6 million people

Tutorials

Latest
Popular

How to access the Dark Web using the Tor Browser

How to enable Kernel-mode Hardware-enforced Stack Protection in Windows 11

How to use the Windows Registry Editor

How to backup and restore the Windows Registry

How to start Windows in Safe Mode

How to remove a Trojan, Virus, Worm, or other Malware

How to show hidden files in Windows 7

How to see hidden files in Windows

Webinars
Downloads

Latest
Most Downloaded

Qualys BrowserCheck

STOPDecrypter

AuroraDecrypter

FilesLockerDecrypter

AdwCleaner

ComboFix

RKill

Junkware Removal Tool

Deals

Categories

eLearning

IT Certification Courses

Gear + Gadgets

Security

VPNs

Popular

Best VPNs

How to change IP address

Access the dark web safely

Best VPN for YouTube

Forums
More

Virus Removal Guides
Startup Database
Uninstall Database
Glossary
Send us a Tip!
Welcome Guide

HomeNewsSecurityRomanian gets 5 years in prison for hacking Oregon govt network

Romanian gets 5 years in prison for hacking Oregon govt network

By Sergiu Gatlan

May 28, 2026
08:43 AM
0

A Romanian national was sentenced this week to 56 months in federal prison for breaking into an Oregon state government computer network and fr cyberattacks targeting dozens of other U.S. victims.
46-year-old Catalin Dragomir (who used the online handle "inthematrixl") of Constanta, Romania, pleaded guilty on February 19 to one count of aggravated identity theft and one count of obtaining information from a protected computer.
The charges carried a maximum of five years in prison for the computer intrusion count, followed by a mandatory consecutive two-year term for the identity theft count, a fine of $250,000, and three years' supervised release. The court also ordered Dragomir to forfeit approximately 23 Monero (XMR), a cryptocurrency, valued at roughly $8,500.
According to court documents, Dragomir gained unauthorized access to a computer on the network of the Oregon Department of Emergency Management (then called the Oregon Office of Emergency Management) in June 2021 and subsequently sold that access to a prospective buyer.
The prosecutors added that during the transaction, Dragomir provided the buyer with samples of personally identifiable information (including names, email addresses, dates of birth, and passport numbers) taken from the hacked device.
He also sold access to the networks of nearly a dozen other victims across the United States, which led to total losses of at least $250,000.
Dragomir was arrested in Romania in November 2024 following coordination among the Justice Department's Office of International Affairs, the Romanian Ministry of Justice, the Directorate for International Law and Judicial Cooperation, and the Romanian Judiciary, and was extradited to the United States in January 2025.
The case was investigated by the FBI's Portland Field Office and prosecuted by the Justice Department's Computer Crime and Intellectual Property Section. Since 2020, that section has secured court orders to return over $350 million in victim funds following convictions against more than 180 cybercriminals and intellectual property criminals.
This week, the U.S. Justice Department also announced that a Canadian man was sentenced to 33 years in prison after admitting to targeting over 145 children across the United States in an eight-year-long sextortion scheme.

The Validation Gap: Automated Pentesting Answers One Question. You Need Six.

Automated pentesting tools deliver real value, but they were built to answer one question: can an attacker move through the network? They were not built to test whether your controls block threats, your detection rules fire, or your cloud configs hold.This guide covers the 6 surfaces you actually need to validate.
Download Now

Related Articles:
Romanian leader of online swatting ring gets 4 years in prisonSextortionist sentenced to 33 years for targeting 145 childrenUS ransomware negotiators get 4 years in prison over BlackCat attacksUS reportedly charges Scattered Spider hacker arrested in FinlandBritish Scattered Spider hacker pleads guilty to crypto theft charges

Hacker
Oregon
Prison
Romania
USA

Sergiu Gatlan
Sergiu is a news reporter who has covered the latest cybersecurity and technology developments for over a decade. Email or Twitter DMs for tips.

Previous Article

Post a Comment Community Rules

You need to login in order to post a comment

Not a member yet? Register Now

You may also like:

  Upcoming Webinar

Popular Stories

FBI warns of Kali365 phishing service targeting Microsoft 365 accounts

Microsoft Defender can now automatically isolate hacked endpoints

Anthropic’s restricted Claude Mythos model may be coming to Claude Code

Sponsor Posts

Protect Your Business from Ecommerce Fraud

AI is a data-breach time bomb: Read the new report

33% Rise in Healthcare Credential Theft in 2025: What you need to know

Overdue a password health-check? Audit your Active Directory for free

  Upcoming Webinar

Follow us:

Main Sections

News
Webinars
VPN Buyer Guides
SysAdmin Software Guides
Downloads
Virus Removal Guides
Tutorials
Startup Database
Uninstall Database
Glossary

Community

Forums
Forum Rules
Chat

Useful Resources

Welcome Guide
Sitemap

Company

About BleepingComputer
Contact Us
Send us a Tip!
Advertising
Write for BleepingComputer
Social & Feeds
Changelog

Terms of Use - Privacy Policy - Ethics Statement - Affiliate Disclosure

Copyright @ 2003 - 2026 Bleeping Computer® LLC - All Rights Reserved

Login

Username

Password

Remember Me

Sign in anonymously

Sign in with Twitter

Not a member yet? Register Now


Reporter

Help us understand the problem. What is going on with this comment?

Spam

Abusive or Harmful

Inappropriate content

Strong language

Other

Read our posting guidelinese to learn what content is prohibited.

Submitting...
SUBMIT

A Romanian national was recently sentenced to fifty-six months in federal prison for engaging in cyberattacks against the Oregon state government network and numerous other U.S. victims. Catalin Dragomir, a forty-six-year-old resident of Constanta, Romania, pleaded guilty to one count of aggravated identity theft and one count of obtaining information from a protected computer. The charges carried potential maximum prison terms of five years for computer intrusion and a mandatory two-year term for identity theft, along with a fine of $250,000 and three years of supervised release. As part of the sentence, Dragomir was ordered to forfeit approximately twenty-three Monero cryptocurrency, valued at roughly $8,500.

According to court documents, Dragomir gained unauthorized access to the computer system of the Oregon Department of Emergency Management in June 2021, from which he subsequently sold access to a prospective buyer. During this transaction, Dragomir provided the buyer with personally identifiable information, including names, email addresses, dates of birth, and passport numbers, obtained from the compromised device. Furthermore, he sold access to the networks of nearly a dozen other victims across the United States, resulting in total losses estimated at least $250,000.

Dragomir was arrested in Romania in November 2024, following coordination between the Justice Department's Office of International Affairs, the Romanian Ministry of Justice, the Directorate for International Law and Judicial Cooperation, and the Romanian Judiciary. He was subsequently extradited to the United States in January 2025. The case was investigated by the FBI's Portland Field Office and prosecuted by the Justice Department's Computer Crime and Intellectual Property Section. This section has previously secured court orders to return over $350 million in victim funds resulting from convictions against more than one hundred eighty cybercriminals and intellectual property offenders.