Russia Takes Down REvil Hackers—as Ukraine Tensions Mount

“I think being concerned about Russia’s ulterior motives is perfectly reasonable,” says John Hultquist, vice president of threat intelligence at the security firm Mandiant. “This essentially is a feather in their cap and you could definitely take a cynical view of it and think that it’s all signaling. But I think ultimately it’s still good news. The actors needed to know that if you are harassing thousands of people and stealing hundreds of millions of dollars you can’t just ride off into the sunset.”

It isn’t the first time an alleged member of REvil has faced action from law enforcement. In November, 22-year-old Ukrainian national Yaroslav Vasinskyi was arrested in Poland and accused of conducting the Kaseya attack. Vasinskyi allegedly abused a Kaseya product to deploy REvil code that then spread the group’s ransomware via Kaseya’s networks, according to a Department of Justice indictment. Yevgeniy Polyanin, a 28-year-old Russian national, was also charged with deploying REvil’s ransomware—he’s accused of conducting 3,000 ransomware attacks—and had $6.1 million of his assets seized.

Law enforcement agencies around the world, including in Ukraine, have increasingly been working together in efforts to tackle ransomware actors. Since February 2021, Europol has arrested five hackers linked to REvil and says 17 countries have been working on its investigations. These include the US, UK, France, Germany, and Australia.

Without cooperation from Russia, though, officials have had some hard limits on which gangs they could effectively target. After hitting a zenith—or nadir—with a series of disruptive and destructive attacks in the summer of 2021, REvil mostly went dark after international law enforcement compromised its infrastructure. Other Russia-based groups, though, like the notorious DarkSide gang and its successor BlackMatter, have continued their targeting, at least for now.

“The big question, I suppose, is does this represent a real shift in Russia’s intentions to deal with this problem, or has REvil simply been sacrificed in an attempt to alleviate some international pressure?” says Brett Callow, a threat analyst at the antivirus company Emsisoft. “I would suspect the latter.”

Callow and others emphasize, though, that while it will take time to learn more about the Russian government’s approach, seeing so many REvil operators apprehended should provide some amount of deterrent effect. And in an interconnected industry like the ransomware market, every disruption is significant.

“I agree there must be a motivation other than ‘the US asked us nicely,’ but regardless, this will further disrupt the ransomware economy, at least in the short term,” says incident responder and former NSA hacker Jake Williams.

In the long term, several ransomware groups operating out of Russia remain highly active. The REvil takedown is a sign of progress, but what really matters will be the Kremlin’s appetite for pursuing those other gangs as well.


More Great WIRED Stories

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
Microsoft has promised to actively look into right to repair thumbnail

Microsoft has promised to actively look into right to repair

Microsoft has agreed to have an independent third-party study the potential impact of it making its devices easier to repair and to make changes based on those findings by the end of 2022, according to Grist and the shareholder advocacy group As You Sow. The agreement was made after As You Sow filed a shareholder…
Read More
Skoda Scala surprises with October prices!  What happened suddenly? thumbnail

Skoda Scala surprises with October prices! What happened suddenly?

Otomobil 04/10/2021 11:00 C sınıfı hacthback olarak bilinen Skoda Scala da zam furyasından etkilenen araçlar arasına katıldı. İşte modelin güncel fiyat listesi! Sıfır otomobil pazarında yaşanan gelişmeleri sizlerle paylaşmaya devam ediyoruz. Bu haberimizde ise konuğumuz C sınıfı hacthback modeli olarak bilinen Skoda Scala olacak.  Volkswagen Golf’ün kuzeni olarak tabir edilen Scala, ülkemizde fazlasıyla sevildi. Tüketiciler…
Read More
Leaked benchmarks show the new GeForce RTX 4080 16GB breaking 3GHz thumbnail

Leaked benchmarks show the new GeForce RTX 4080 16GB breaking 3GHz

Highly anticipated: A recent Chiphell forum post shows Nvidia's RTX 4080 16GB breaking the 3GHz mark in 3DMark TimeSpy. More impressively, Nvidia's new architecture hit those speeds at its default 320w power limit. If true, the RTX 4080 16GB will offer users access to impressive clock speeds without the 4090's reported power requirements. The news
Read More
The NFL and Amazon are using AI to invent new football stats thumbnail

The NFL and Amazon are using AI to invent new football stats

The National Football League, like most professional sporting industries, is embracing artificial intelligence. Through a partnership with Amazon Web Services called Next Gen Stats, the NFL is hoping that intelligent algorithms, with the help of high-tech data collection tools, will be able to extract meaningful data from games and decipher patterns in player performances. AWS
Read More
Lunar samples returned by Chang’e-5 tell of recent volcanism thumbnail

Lunar samples returned by Chang’e-5 tell of recent volcanism

Molten Moon — "Recent" is relative—the samples are roughly two billion years old. John Timmer - Oct 7, 2021 7:42 pm UTC Enlarge / An electron micrograph of some of the volcanic material returned by the Chang'e 5 mission.Beijing SHRIMP Center, Institute of Geology, CAGSChang'e-5 represented a major step forward for China's lunar program, as…
Read More
BenQ MOBIUZ EX3210 şi EX2710U sunt monitoare de gaming vârf de gamă, cu rezoluţie 4K şi subwoofer thumbnail

BenQ MOBIUZ EX3210 şi EX2710U sunt monitoare de gaming vârf de gamă, cu rezoluţie 4K şi subwoofer

BenQ a anunţat noi monitoare din gama MOBIUZ, mai precis MOBIUZ EX3210U şi EX2710U. Acestea sunt vârfuri de gamă ale seriei, care aduc rezoluţie 4K, sistem audio 2.1 cu subwoofer, telecomandă şi microfon cu AI pentru anularea zgomotului de fundal. Publicitate ⚡ -3% din preț pe QuickMobile dacă folosești cuponul: QUICK202 BenQ MOBIUZ EX3210U şi…
Read More
Index Of News