Evidence walkthrough.
The facsimiles are reading aids. The PDF links open the underlying documents that should control.
Theme 8 · The Inside Mole
A backdoor into the victim's accounts
The complaint states Rajaee's own assistant kept master-password access after leaving — and used it for ~1.5 years to read his attorney-client emails and delete the very certificates that proved his ownership. Scroll through it.
Scroll ↓
Bottom lineRajaee’s own assistant kept a password backdoor for ~1.5 years, read his attorney-client email, and deleted the certificates proving his ownership.
1
The trusted insider
Siarra Wood was Rajaee's personal/executive assistant (2016–2022), employed by Mobile Monster. In that role she had access to his password manager and accounts — access the complaint states she never gave up.
The insider (as stated)
WhoSiarra Wood
RoleRajaee's executive assistant (2016–2022)
AccessLastPass SSO master access
loyaltycovertly reporting to Davis
Complaint cite · Complaint ¶¶83–86
2
The backdoor she kept
The complaint states Wood retained LastPass single-sign-on master access and used it from a Toronto IP address to enter Rajaee's accounts without authorization — beginning around February 2021 and continuing for roughly a year and a half.
The intrusion (as stated)
Methodretained LastPass master password
Access pointToronto IP address
Began~February 2021
Duration~1.5 years
Statute18 U.S.C. §1030 (computer fraud)
Unauthorized access — for a year and a halfA login alert from Toronto flagged it
View the LastPass notice →Source: LastPass account notice (public exhibit). Account-access records corroborate the intrusion.
3
What the access was used for: spying and deletion
The complaint states the access was used to monitor Rajaee's attorney-client communications and report his legal strategy to Davis — and to delete the TopDevz membership certificates from his inbox, the very documents proving his ownership.
Use of the access (as stated)
Monitoredattorney-client communications
Reported toDavis (legal strategy)
DeletedTopDevz membership certificates
Effectdestroyed Rajaee's ownership proof
Spying + evidence deletionThe certificates proving his stake were erased
Two crimes in oneThe same conduct supports both unauthorized computer access (§1030) and obstruction/evidence-destruction (§1512) — and it overlaps with the "blitz" theme, where a certificate reducing Rajaee to 4.692% appeared while his real certificates went missing.
4
The deletion didn't hold: recovery and the payoff
The complaint states the deleted certificates were recovered (e.g., via Google Vault), defeating the cover-up — and that Wood later received a Davis-funded settlement, which the complaint frames as payment for her role.
Recovery & aftermath (as stated)
Deleted certificatesrecovered (Google Vault)
Cover-updefeated by the recovery
Wood later receiveda Davis-funded settlement
The evidence came backAnd the payoff followed
Complaint cite · Complaint ¶¶85–86, 298
Why it matters to the whole caseThe recovered certificates are part of what proves Rajaee's ownership — and the deletion is direct evidence of consciousness of guilt and coordinated obstruction, tying the inside-mole conduct to the broader enterprise.