Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Ransomware

Russian Cybercrime Network Targeted for Sanctions Across US, UK and Australia

Russia-based bulletproof hosting services provider Zservers was sanctioned for providing services to support LockBit ransomware operations.

LockBit ransomware developer extradited

The U.S., U.K. and Australia on Tuesday sanctioned a Russian web-hosting services provider and two Russian men who administer the service in support of Russian ransomware syndicate LockBit.

The Treasury Department’s Office of Foreign Assets Control and its U.K. and Australian counterparts sanctioned Zservers, a Russia-based bulletproof hosting services provider — which is a web-hosting service that ignores or evades law enforcement requests — and two Russian nationals serving as Zservers operators.

Treasury alleges that Zservers provided LockBit access to specialized servers designed to resist law enforcement actions.

LockBit ransomware attacks have extracted more than $120 million from thousands of victims around the world. LockBit has operated since 2019, and is the most deployed ransomware variant across the world and continues to be prolific, according to the U.S. Cybersecurity and Infrastructure Security Agency.

The Treasury Department’s Acting Under Secretary for Terrorism and Financial Intelligence, Bradley T. Smith, said Tuesday’s action “underscores our collective resolve to disrupt all aspects of this criminal ecosystem, wherever located, to protect our national security.”

LockBit has been linked to attacks on airplane manufacturer Boeing, the November 2023 attack against the Industrial Commercial Bank of China, the U.K.’s Royal Mail, Britain’s National Health Service and international law firm Allen and Overy.

Advertisement. Scroll to continue reading.

Ransomware is the costliest and most disruptive form of cybercrime, crippling local governments, court systems, hospitals and schools as well as businesses. It is difficult to combat as most gangs are based in former Soviet states and out of reach of Western justice.

Tammy Bruce, a State Department spokeswoman said Tuesday’s sanctions “underscore the United States’ commitment, along with our international partners, to combating cybercrime and degrading the networks that enable cyber criminals to target our citizens.”

Related: US Offering $10M for LockBit Leaders as Law Enforcement Taunts Cybercriminals

Related: LockBit Ransomware Developer Arrested in Israel at Request of US

RelatedLockBit Ransomware Again Most Active – Real Attack Surge or Smokescreen?

RelatedFBI Says It Has 7,000 LockBit Ransomware Decryption Keys

Written By

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we explore why exploitation is outpacing remediation, where risk is growing fastest, and what security leaders can do to close the gap before attackers take advantage.

Register

CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps!

Register

People on the Move

John DeSimone, the former CEO of Nightwing, has been named Chief Operating Officer at Everfox.

Sectigo has appointed Prem Hareesh as Corporate Chief Technology Officer.

Assaf Keren, who previously served as CSO/CISO at Qualtrics and PayPal, is Meta's new CISO.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.