The U.S. Department of Justice has announced a $10 million reward for information leading to the arrest of Amin Timovich Stigal (Амин Тимович Стигал), a 22-year-old Russian citizen charged with conspiracy to hack into and destroy computer systems and data.
A federal grand jury in Maryland returned the indictment, highlighting Stigal’s alleged involvement in cyberattacks targeting Ukrainian government systems and, later, countries supporting Ukraine, including the United States.
According to the U.S. Department of Justice, Stigal and members of the Main Intelligence Directorate of the General Staff (GRU) of the Russian Federation conspired to use a U.S.-based company’s services to distribute malware known as “WhisperGate” to dozens of Ukrainian government entities’ computer systems.
The attacks, which began in January 2022, aimed to destroy these systems and related data in advance of the Russian invasion of Ukraine.
On January 13, 2022, the Conspirators attacked multiple Ukrainian government networks, including the Ministry of International Affairs, the State Treasury, and the Ministry of Education and Science, among others.
The malware, designed to look like ransomware, was a cyberweapon intended to destroy the target computer and related data.
Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan
The Conspirators also exfiltrated sensitive data and defaced websites to instill fear among the Ukrainian population.
The indictment further alleges that in August 2022, the Conspirators hacked the transportation infrastructure of a Central European country supporting Ukraine.
From August 2021 through February 2022, they also probed computers belonging to a federal government agency in Maryland, using the same infrastructure as in the Ukraine-related attacks.
Attorney General Merrick B. Garland stated, “The Justice Department will continue to stand with Ukraine on every front in its fight against Russia’s war of aggression, including by holding accountable those who support Russia’s malicious cyber activity.”
Assistant Attorney General Matthew G. Olsen added, “The Department will do its part to prevent and disrupt such malicious behavior that relies upon online services or infrastructure in the U.S., or that targets U.S. victims.”
FBI Deputy Director Paul Abbate emphasized the FBI’s commitment to combating malicious cyber activities by adversaries.
“Today’s indictment demonstrates the FBI’s unwavering commitment to combat malicious cyber activities by our adversaries, and we will continue to work with our international partners to thwart attempts to undermine and harm our allies,” Abbate said.
Special Agent in Charge William J. DelBagno of the FBI Baltimore Field Office reiterated the FBI’s dedication to pursuing justice and disrupting malicious cyber actors.
“To those adversaries who seek to compromise our international partners’ systems, know you will be identified and you will face consequences for your actions,” DelBagno stated.
If convicted, Stigal faces a maximum penalty of five years in prison.
The FBI Baltimore Field Office is investigating the case, with Assistant U.S. Attorneys Aaron S.J. Zelinsky and Robert I. Goldaris for the District of Maryland prosecuting.
The National Security Division’s National Security Cyber Section supports the investigation.
The U.S. Department of Justice’s announcement underscores the ongoing international efforts to combat cyber threats and hold cybercriminals accountable for their actions.
Stay in the loop with the latest in cybersecurity by following us on Linkedin and X for daily updates!
Resecurity, a global leader in cybersecurity solutions, unveiled its advanced Government Security Operations Center (GSOC)…
Zloader, a sophisticated Trojan, has recently evolved with features that enhance its stealth and destructive…
The US Treasury Department's Office of Foreign Assets Control (OFAC) has sanctioned Sichuan Silence Information…
DMD Diamond - one of the oldest blockchain projects in the space has announced the start…
Researchers reported a phishing attack on December 4th, 2024, where malicious emails purportedly from the…
The Japan Computer Emergency Response Team Coordination Center (JPCERT/CC) has confirmed an advanced cyber attack…