Sunday, June 15, 2025
Homecyber securityREvil Ransomware Affiliate Sentenced for 13 Years in Prison

REvil Ransomware Affiliate Sentenced for 13 Years in Prison

Published on

SIEM as a Service

Follow Us on Google News

A Ukrainian national, Yaroslav Vasinskyi, has been sentenced to 13 years and seven months in prison.

Vasinskyi, known in the cyber underworld as Rabotnik, was also ordered to pay over $16 million in restitution for his role in orchestrating more than 2,500 ransomware attacks worldwide, demanding over $700 million in ransom payments.

A Global Threat Neutralized

Yaroslav Vasinskyi’s criminal activities spanned across the globe, targeting thousands of computers with the notorious Sodinokibi/REvil ransomware variant.

- Advertisement - Google News

This malicious software encrypted data on victim computers, enabling Vasinskyi and his co-conspirators to demand ransom payments in cryptocurrency.

Document

Integrate ANY.RUN in Your Company for Effective Malware Analysis

Are you from SOC, Threat Research, or DFIR departments? If so, you can join an online community of 400,000 independent security researchers:

  • Real-time Detection
  • Interactive Malware Analysis
  • Easy to Learn by New Security Team members
  • Get detailed reports with maximum data
  • Set Up Virtual Machine in Linux & all Windows OS Versions
  • Interact with Malware Safely

If you want to test all these features now with completely free access to the sandbox:

In a bid to force victims into paying, they threatened to disclose sensitive data publicly.

The Justice Department’s swift action underscores a significant victory against international cybercrime, demonstrating the effectiveness of global cooperation in the digital age.

Attorney General Merrick B. Garland emphasized the department’s commitment to using all available tools to identify, prosecute, and dismantle the networks of cybercriminals.

“As this sentencing shows, the Justice Department is working with our international partners and using all tools at our disposal to identify cybercriminals, capture their illicit profits, and hold them accountable for their crimes,” Garland stated.

International Collaboration and Justice

The case against Vasinskyi showcases the extensive international collaboration between the U.S. Justice Department, the FBI, and foreign law enforcement agencies.

Vasinskyi’s extradition from Poland to the United States marked a pivotal moment in the case, facilitated by the Justice Department’s Office of International Affairs and Polish authorities.

FBI Director Christopher Wray highlighted the relentless pursuit of cybercriminals, regardless of their location.

On-Demand Webinar to Secure the Top 3 SME Attack Vectors: Watch for Free.

“Today, the FBI’s close collaboration with our worldwide partners has again ensured that a cybercriminal who thought he was beyond our reach faces the consequences of his actions,” Wray remarked.

This case is a stern warning to cybercriminals targeting U.S. victims that law enforcement agencies are equipped and determined to bring them to justice.

In addition to the prison sentence and restitution, the Department of Justice has successfully obtained the final forfeiture of millions of dollars worth of ransom payments, including 39.89138522 Bitcoin and $6.1 million in U.S. dollar funds.

These funds were traceable to ransom payments received by members of the conspiracy, further crippling the financial infrastructure supporting international cybercrime.

The sentencing of Yaroslav Vasinskyi is a testament to the global commitment to combating cyber threats and protecting citizens and businesses from the devastating impacts of ransomware attacks.

It sends a clear message to cybercriminals everywhere: the international law enforcement community stands united and resolute in its mission to dismantle criminal enterprises and ensure justice is served.

Is Your Network Under Attack? - Read CISO’s Guide to Avoiding the Next Breach - Download Free Guide

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

Kali Linux 2025.2 Released: New Tools, Smartwatch and Car Hacking Added

Kali Linux, the preferred distribution for security professionals, has launched its second major release...

Arsen Launches AI-Powered Vishing Simulation to Help Organizations Combat Voice Phishing at Scale

Arsen, the cybersecurity startup known for defending organizations against social engineering threats, has announced...

NIST Releases New Guide – 19 Strategies for Building Zero Trust Architectures

The National Institute of Standards and Technology (NIST) has released groundbreaking guidance to help...

Spring Framework Flaw Enables Remote File Disclosure via “Content‑Disposition” Header

A medium-severity reflected file download (RFD) vulnerability (CVE-2025-41234) in VMware's Spring Framework has been...

Credential Abuse: 15-Min Attack Simulation

Credential Abuse Unmasked

Credential abuse is #1 attack vector in web and API breaches today (Verizon DBIR 2025). Join our live, 15-min attack simulation with Karthik Krishnamoorthy (CTO - Indusface) and Phani Deepak Akella (VP of Marketing - Indusface) to see hackers move from first probe to full account takeover.

Discussion points


Username & email enumeration – how a stray status-code reveals valid accounts.
Password spraying – low-and-slow guesses that evade basic lockouts.
Credential stuffing – lightning-fast reuse of breach combos at scale.
MFA / session-token bypass – sliding past second factors with stolen cookies.

More like this

Kali Linux 2025.2 Released: New Tools, Smartwatch and Car Hacking Added

Kali Linux, the preferred distribution for security professionals, has launched its second major release...

NIST Releases New Guide – 19 Strategies for Building Zero Trust Architectures

The National Institute of Standards and Technology (NIST) has released groundbreaking guidance to help...

Spring Framework Flaw Enables Remote File Disclosure via “Content‑Disposition” Header

A medium-severity reflected file download (RFD) vulnerability (CVE-2025-41234) in VMware's Spring Framework has been...