I downloaded the indictment (edit: complaint, not indictment) from PACER: https://www.dropbox.com/s/z7u5rxcdajuvw6t/19718675504.pdf?dl...
-Paige left code used in the "attack" on her GitHub.
-Paige left text files with unencrypted data there, too.
-Paige openly posted about it in an open (!!!) Slack channel and publicly named her VPN service of choice, which of course, matched access logs AND GitHub server logs. (Also tor, which the FBI agent was able to confirm and add yet another data point)
-Paige said "I have a leak proof IPredator router setup." nice.
Nice opsec there. Sheesh.
EDIT: Thanks for the PACER share, by the way.