A Venezuelan national has been handed a record-breaking 8-year prison sentence for his role in a massive ATM jackpotting scheme that caused over $3.5 million in losses, marking one of the longest federal sentences imposed on an individual involved in this type of cybercrime.
Juan Manuel Gouveia-Aguilera, 27, was sentenced to 96 months in prison and ordered to pay restitution after pleading guilty to charges of bank fraud, bank burglary, and cyber-enabled fraud. The sentence comes just weeks after two other Venezuelan nationals received 78-month prison sentences for their role in ATM jackpotting, with both cases believed to be linked to the Venezuelan terrorist organization Tren de Aragua (TdA).
ATM jackpotting typically involves physically removing the outer casing of an ATM and connecting a laptop to install malware. The malware then enables attackers to instruct the ATM to dispense all its cash, often resulting in significant financial losses for banks and their customers.
The US Justice Department has been cracking down on ATM jackpotting cases in recent years, with over 119 individuals charged in Nebraska alone. Earlier this year, the FBI warned of an increase in malware-enabled ATM jackpotting attacks in the United States, citing a surge in reported incidents since 2020, with losses exceeding $20 million last year.
The rise of ATM jackpotting has been attributed to its simplicity and potential for high returns. Attackers can use readily available malware to compromise ATMs, often targeting older models that lack robust security measures. This type of cybercrime is a stark reminder of the importance of robust security measures in the financial sector, as well as the need for law enforcement agencies to stay one step ahead of increasingly sophisticated attackers.
The record-breaking sentence handed down to Gouveia-Aguilera sends a clear message to those involved in ATM jackpotting: the consequences of this type of cybercrime are severe and will be prosecuted to the fullest extent. As law enforcement continues to crack down on these types of cases, it’s essential for financial institutions to remain vigilant and invest in robust security measures to protect their customers’ funds.
For individuals and businesses alike, this case serves as a timely reminder to prioritize cybersecurity and take proactive steps to protect themselves from the ever-evolving threats of cybercrime. By staying informed about the latest threats and best practices, we can work together to prevent these types of attacks and ensure the integrity of our financial systems.
Source: SecurityWeek — 2026-08-24