> for "his role in creating and distributing the Kronos banking Trojan," according to a spokesperson from the U.S. Department of Justice.
> The charges relate to alleged conduct occurring between July 2014 and July 2015.
======
They are awfully quiet about the charges.
> It is not clear why Hutchins has been arrested or if he will face charges in the US. The US Marshals office confirmed it was the FBI who arrested Hutchins.
Source: OP
and on motherboard.vice.com
> The friend told Motherboard they "tried to visit him as soon as the detention centre opened but he had already been transferred out." Motherboard granted the source anonymity due to privacy concerns.
> "I've spoken to the US Marshals again and they say they have no record of Marcus being in the system. At this point we've been trying to get in contact with Marcus for 18 hours and nobody knows where he's been taken," the person added. "We still don't know why Marcus has been arrested and now we have no idea where in the US he's been taken to and we're extremely concerned for his welfare."
Source: https://motherboard.vice.com/en_us/article/ywp8k5/researcher...
Registering unregistered domains the malware connects to is a very obvious thing to do, in this case he got "lucky".
Just because someone else could have stopped it, doesn't mean he didn't stop it. That's... just a fact...
This was inevitable because of how WannaCry was designed.
In this case WannaCry creators built a system that would inevitably be triggered within a few hours from the malware going live.
I think it is meaningless to attribute the WannaCry killswitch to him instead of the authors. If he hadn't registered the domain some other threat intelligence firm would've done it moments later.