Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Ukrainian Malware Operator Pleads Guilty in US Court

Ukrainian national Mark Sokolovsky has pleaded guilty in a US court to operating the malware named Raccoon Infostealer.

The US Justice Department announced on Monday that a Ukrainian national has pleaded guilty over his role in the operation of a piece of malware named Raccoon Infostealer.

The individual is 28-year-old Mark Sokolovsky. He was arrested in March 2022 in the Netherlands and extradited to the US in February 2024 to face computer hacking, fraud, identity theft and money laundering charges.

When they arrested Sokolovsky, authorities also dismantled the infrastructure used at the time by Raccoon Stealer, but the malware was later resurrected

The Justice Department said Sokolovsky pleaded guilty in a Texas court to one count of conspiracy to commit computer intrusions. As part of the plea agreement, the Ukrainian cybercriminal will forfeit nearly $24,000 and pay more than $910,000 in restitution. 

Raccoon Infostealer emerged in 2018 and Sokolovsky is said to be one of its “key administrators”.

The malware, offered through a malware-as-a-service model, enabled users to steal data from infected devices, including login credentials and financial information, which could be used for financial crimes or be sold to other cybercriminals.

Advertisement. Scroll to continue reading.

Raccoon Infostealer was leased to malicious actors for $200 per month and it infected millions of computers around the world.

The FBI has set up a website where users can check whether their email address shows up in the data stolen by Raccoon Infostealer.

Related: More LockBit Hackers Arrested, Unmasked as Law Enforcement Seizes Servers

Related: Russian TrickBot Malware Developer Sentenced to Prison in US

Related: Russian Sentenced to Prison in US for Selling Stolen Information

Related: Ukrainian Sentenced to Prison in US for Role in Zeus, IcedID Malware Operations

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Today’s attackers are no longer breaking in — they’re logging in. Join this live webinar as we break down the modern identity attack chain and examine how recent breaches exploited weaknesses in authentication, identity verification, and access management processes.

Register

AI has accelerated both sides of the fight. Adversaries are weaponizing vulnerabilities faster, while defenders are racing to ship detections and configurations. Join this live webinar as we explore how to prove your controls actually hold against new threats, map your security maturity, and unite breach simulation with automated pentesting into a single, coordinated program.

Register

People on the Move

Jonathan Trull has joined Oracle as Global Head of Cyber Defense.

Plaid has appointed Sean Cassidy as Chief Information Security Officer.

Ann Barron-DiCamillo has been named Executive Vice President and Global Chief Information Security Officer at U.S. Bank.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.