A Canadian hacker accused of orchestrating one of the largest cloud data breaches in recent history has admitted guilt in a U.S. court. Connor Moucka, 26, pleaded guilty to charges stemming from a campaign that compromised more than 165 companies and exposed billions of records. Main Developments The U.S. Department of Justice announced Moucka's guilty plea on Wednesday. His activities centered on breaching cloud provider Snowflake, which gave him and his co-conspirators access to dozens of that company's enterprise customers. High-profile victims include AT&T, LendingTree, and Ticketmaster. The AT&T breach alone exposed call and texting records from more than 100 million customers, while other attacks yielded banking details, driver's license numbers, and Social Security numbers. Read also: Why TikTok's Nashville exit signals a bigger shift Financial gains from the scheme were substantial. Moucka and his accomplices collected over $2.5 million in ransom payments, plus roughly $500,000 from selling stolen data on hacking forums like BreachForums. Victims sustained $9.5 million in total losses, according to the DOJ. Background Moucka, known online by the handles Waifu and Judische, was arrested in Canada in late 2024, just months after the Snowflake breaches came to light. At that time, Austin Larsen, a senior researcher at Google's cybersecurity firm Mandiant who investigated the hacks, described Moucka as one of the most consequential hackers of 2024. The case reflects a growing pattern of cybercriminals targeting cloud infrastructure to reach multiple organizations through a single point of failure. Snowflake's customer base made it an attractive target for attackers seeking broad access to sensitive corporate data. Why It Matters FBI Special Agent W. Mike Herrington characterized Moucka's tactics as calculated and predatory, emphasizing the real harm inflicted on both corporate victims and the millions of everyday consumers whose data was compromised. The scale of this breach underscores the vulnerability of centralized cloud storage systems. For businesses and individuals alike, the case highlights the cascading consequences of a single cloud provider breach. The theft of Social Security numbers and banking information carries long-term risks of identity theft and financial fraud for affected consumers. What's Next Moucka is scheduled to be sentenced on October 27 and faces decades in prison. The plea deal may also involve cooperation with ongoing investigations into his co-conspirators, though the DOJ has not disclosed specific terms. Questions remain about whether additional arrests will follow and how affected companies will handle ongoing notification and remediation efforts for the millions of individuals whose personal data was exposed.