Christopher Taylor
Attribution profile
STIX characteristics
Threat actor characteristics are available to members.
Profile narrative
Christopher Taylor, also known by the alias Christopher Taylor, is a United Kingdom‑based individual who was identified as the operator of the Cammy malware campaign. He resides in Wigan and was apprehended by Greater Manchester Police in February 2016 after the malware was detected on a Georgia Institute of Technology laptop. The actor’s activities came to light when university administrators reported the presence of the software to the FBI, which traced the infection to an IP address linked to Taylor.
Taylor’s operation involved deceiving private individuals into downloading the Cammy program, which then granted him covert access to their webcams. The malware enabled him to capture video footage and screenshots, including explicit content, from victims’ computers. Between August 2012 and July 2015, he allegedly compromised 772 victims across 39 countries, including 52 users in the United Kingdom and 52 in the United States. During a 2016 interview with law enforcement, Taylor admitted to using the software to obtain intimate images, and a subsequent search of his hard drives revealed approximately 770 such files. He was subsequently charged in the United States with wire fraud and two counts of computer fraud related to the intrusion and data theft.
A United Kingdom judge denied the United States’ extradition request, ruling that surrendering Taylor would not serve the interests of justice, and he was released on bail pending any appeal. The case highlighted the cross‑border nature of webcam‑based espionage and the legal challenges involved in prosecuting such offenses when the suspect is located in a different jurisdiction. No public information links Taylor to any state sponsor or criminal organization, and the available sources describe his actions as an individually conducted cybercrime operation.
Incidents
Attributed incidents are available to members.
1 incident