In January 2022, Russian law enforcement arrested eight individuals from infamous REvil ransomware gang. Three-plus years later, four of them—Andrey Bessonov, Mikhail Golovachuk, Roman Muromsky, and Dmitry Korotayev—pleaded guilty to carding and malware dissemination and were let out after that. They were sentenced to five years in prison, according to Russian state news service TASS, but were discharged on time served, having already done enough time under pre-trial detention in a Russian detention facility (SIZO). Four individuals—Artem Zayets, Alexey Malozemov, Daniil Puzyrevsky, and Ruslan Khansvyarov—received prison sentences ranging from 4.5 to 6 years after declining to enter guilty pleas. A Russian court found them guilty of unlawfully distributing payment tools, with Puzyrevsky and Khansvyarov also convicted for spreading malicious software. This marks one of the earliest instances where Russian courts have sentenced local cybercriminals. REvil, or Sodinokibi, appeared in April 2019 as the successor to the GandCrab ransomware collective. It became one of the most productive ransomware operations shortly thereafter, reportedly making more than \\$100 million in one year. The group received international attention in July 2021 following a massive supply chain attack on Kaseya, impacting more than 1,500 businesses worldwide. This led U.S. President Joe Biden to pressure Russia to act against cybercriminals based within its borders. Global law enforcement moved decisively. Ukrainian national Yaroslav Vasinskyi, one of the members in the Kaseya attack, was arrested and subsequently handed a 13-year prison sentence in May 2024. Another affiliate had over \\$6 million taken away, and two more REvil operatives were arrested by Romanian officials. Although the group tried to reboot operations, law enforcement was already inside their systems, and this resulted in additional arrests by the Russian FSB. In spite of Russia's initial collaboration, cybersecurity cooperation with the U.S. ceased after invading Ukraine in 2022.
Cybercriminals are now weaponizing legitimate hotel reservation data to trick travelers into surrendering their payment details. This "Reservation Hijack Scam" stands out b...
A serious security issue has been discovered in nginx-ui, which can allow attackers to take full control of a system. This vulnerability is tracked as CVE-2026-33026. The problem e...
A sophisticated phishing campaign is targeting Spanish speaking users across Latin America and Europe, aiming to deploy Windows banking malware such as Casbaneiro (also known as Me...