The Cyber police exposed a criminal group stealing 100 million hryvnias from Ukrainians under the guise of social security payments from the European Union.
According to the cyber police of Ukraine, the criminals created more than 400 phishing links to acquire the bank card data of citizens and appropriate money from their accounts. As a consequence, the criminal may face up to 15 years behind bars for what they have committed.
A dedicated cybercrime unit within the Ministry of Internal Affairs operating with police based in central Kyiv and specialists from the National Bank of Ukraine (NBU) worked to arrest nine individuals.
For obtaining the banking data of citizens, the nine individuals created and administered more than 400 fake web resources. Through the websites, Ukrainians were offered to form an application for the payment of financial assistance from the countries of the European Union.
Unknowingly, by using phishing links victims took surveys and entered their bank card details. Having received bank data, the attackers carried out unauthorized intervention in online banking and withdrew money from citizens’ accounts.
According to the NBU, “Criminals defrauded more than 5,000 citizens. The total amount of damages reaches more than 100 million hryvnias”.
The police searched the home of the suspects and seized computer equipment, mobile phones, bank cards, and money obtained through the illicit activities. The police also released a video during their raid on a suspect’s home.
The reports state that the perpetrators may face up to fifteen years in prison for multiple violations of Ukraine’s Criminal Code.
“Criminal proceedings have been opened under Part 3 of Art. 190 (Fraud), Part 5 of Art. 361 (Unauthorized interference in the work of information (automated), electronic communication, information and communication systems, electronic communication networks) of the Criminal Code of Ukraine”. “The issue of declaring suspicion and choosing precautionary measures for the persons involved are being resolved”, reads the advisory.
You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity and hacking news updates.
Security researcher Alessandro Sgreccia (aka "rainpwn") has revealed a set of critical vulnerabilities in Zyxel’s…
A high-severity denial-of-service (DoS) vulnerability in Redis, tracked as CVE-2025-21605, allows unauthenticated attackers to crash servers…
Google’s Mandiant team has released its M-Trends 2025 report, highlighting the increasing sophistication of threat…
A critical remote code execution (RCE) vulnerability, identified as CVE-2025-3248 with a CVSS score of…
GitLab, a leading DevOps platform, has released a critical security patch impacting both its Community…
SonicWall has issued an urgent advisory (SNWLID-2025-0009) warning of a high-severity vulnerability in its SSLVPN…