Thursday, April 3, 2025
Homecyber securityREvil Ransomware Affiliate Sentenced for 13 Years in Prison

REvil Ransomware Affiliate Sentenced for 13 Years in Prison

Published on

SIEM as a Service

Follow Us on Google News

A Ukrainian national, Yaroslav Vasinskyi, has been sentenced to 13 years and seven months in prison.

Vasinskyi, known in the cyber underworld as Rabotnik, was also ordered to pay over $16 million in restitution for his role in orchestrating more than 2,500 ransomware attacks worldwide, demanding over $700 million in ransom payments.

A Global Threat Neutralized

Yaroslav Vasinskyi’s criminal activities spanned across the globe, targeting thousands of computers with the notorious Sodinokibi/REvil ransomware variant.

This malicious software encrypted data on victim computers, enabling Vasinskyi and his co-conspirators to demand ransom payments in cryptocurrency.

Document

Integrate ANY.RUN in Your Company for Effective Malware Analysis

Are you from SOC, Threat Research, or DFIR departments? If so, you can join an online community of 400,000 independent security researchers:

  • Real-time Detection
  • Interactive Malware Analysis
  • Easy to Learn by New Security Team members
  • Get detailed reports with maximum data
  • Set Up Virtual Machine in Linux & all Windows OS Versions
  • Interact with Malware Safely

If you want to test all these features now with completely free access to the sandbox:

In a bid to force victims into paying, they threatened to disclose sensitive data publicly.

The Justice Department’s swift action underscores a significant victory against international cybercrime, demonstrating the effectiveness of global cooperation in the digital age.

Attorney General Merrick B. Garland emphasized the department’s commitment to using all available tools to identify, prosecute, and dismantle the networks of cybercriminals.

“As this sentencing shows, the Justice Department is working with our international partners and using all tools at our disposal to identify cybercriminals, capture their illicit profits, and hold them accountable for their crimes,” Garland stated.

International Collaboration and Justice

The case against Vasinskyi showcases the extensive international collaboration between the U.S. Justice Department, the FBI, and foreign law enforcement agencies.

Vasinskyi’s extradition from Poland to the United States marked a pivotal moment in the case, facilitated by the Justice Department’s Office of International Affairs and Polish authorities.

FBI Director Christopher Wray highlighted the relentless pursuit of cybercriminals, regardless of their location.

On-Demand Webinar to Secure the Top 3 SME Attack Vectors: Watch for Free.

“Today, the FBI’s close collaboration with our worldwide partners has again ensured that a cybercriminal who thought he was beyond our reach faces the consequences of his actions,” Wray remarked.

This case is a stern warning to cybercriminals targeting U.S. victims that law enforcement agencies are equipped and determined to bring them to justice.

In addition to the prison sentence and restitution, the Department of Justice has successfully obtained the final forfeiture of millions of dollars worth of ransom payments, including 39.89138522 Bitcoin and $6.1 million in U.S. dollar funds.

These funds were traceable to ransom payments received by members of the conspiracy, further crippling the financial infrastructure supporting international cybercrime.

The sentencing of Yaroslav Vasinskyi is a testament to the global commitment to combating cyber threats and protecting citizens and businesses from the devastating impacts of ransomware attacks.

It sends a clear message to cybercriminals everywhere: the international law enforcement community stands united and resolute in its mission to dismantle criminal enterprises and ensure justice is served.

Is Your Network Under Attack? - Read CISO’s Guide to Avoiding the Next Breach - Download Free Guide

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

Secure Ideas Achieves CREST Accreditation and CMMC Level 1 Compliance

Secure Ideas, a premier provider of penetration testing and security consulting services, proudly announces...

New Phishing Campaign Targets Investors to Steal Login Credentials

Symantec has recently identified a sophisticated phishing campaign targeting users of Monex Securities (マネックス証券),...

UAC-0219 Hackers Leverage WRECKSTEEL PowerShell Stealer to Extract Data from Computers

In a concerning development, CERT-UA, Ukraine's Computer Emergency Response Team, has reported a series...

Hunters International Linked to Hive Ransomware in Attacks on Windows, Linux, and ESXi Systems

Hunters International, a ransomware group suspected to be a rebrand of the infamous Hive...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

New Phishing Campaign Targets Investors to Steal Login Credentials

Symantec has recently identified a sophisticated phishing campaign targeting users of Monex Securities (マネックス証券),...

UAC-0219 Hackers Leverage WRECKSTEEL PowerShell Stealer to Extract Data from Computers

In a concerning development, CERT-UA, Ukraine's Computer Emergency Response Team, has reported a series...

Hunters International Linked to Hive Ransomware in Attacks on Windows, Linux, and ESXi Systems

Hunters International, a ransomware group suspected to be a rebrand of the infamous Hive...