Article Details
Scrape Timestamp (UTC): 2024-05-07 14:07:42.002
Original Article Text
Click to Toggle View
LockBit ransomware admin identified, sanctioned in US, UK, Australia. The FBI, UK National Crime Agency, and Europol have unveiled sweeping indictments and sanctions against the admin of the LockBit ransomware operation, with the identity of the Russian threat actor being revealed for the first time. According to a new indictment by the US Department of Justice and a press release by the NCA, the LockBit ransomware operator has been confirmed to be a Russian national named Dmitry Yuryevich Khoroshev. The DOJ is expected to release an indictment later today with further information. Today's announcements also include sanctions against the administrator and developer of LockBit, including asset freezes and travel bans. The US is also offering a $10 million reward for information leading to LockBitSupp's arrest and/or conviction as part of the Rewards for Justice program. "The administrator and developer of LockBit, a Russian national, is now subject to aseries of asset freezes and travel bans issued by the UK Foreign, Commonwealth and Development Office, alongside the US Department of the Treasury's Office of Foreign Assets Control (OFAC) and the Australian Department of Foreign Affairs and Trade," reads an announcement from Europol. These sanctions will cause massive disruption for the operation as paying a ransom could potentially break sanctions, imposing government fines on companies. In the past, similar sanctions caused some ransomware negotiators to no longer assist in ransom payments for sanctioned ransomware operations. Law enforcement also announced that its hacking and seizure of LockBit infrastructure allowed them to gain more decryption keys than previously announced. In February, an international law enforcement operation named Operation Chronos took down LockBit's infrastructure, including 34 servers hosting the data leak website and its mirrors, data stolen from the victims, cryptocurrency addresses, decryption keys, and the affiliate panel. Europol now reveals that they obtained 2,500 decryption keys and are continuing to assist LockBit victims in recovering their files for free. This is a developing story.
Daily Brief Summary
The FBI, UK National Crime Agency, and Europol announced indictments and sanctions against Dmitry Yuryevich Khoroshev, the admin of LockBit ransomware.
Khoroshev, identified as a Russian national, faces multiple international legal actions including asset freezes and travel bans.
The US Department of Justice is expected to release further details in an upcoming indictment.
Concurrently, the US has issued a $10 million reward for information leading to Khoroshev's arrest or conviction under the Rewards for Justice program.
Sanctions include prohibitions that complicate ransom payments, potentially leading to government fines for companies involved.
Previous sanctions impacted the ability of ransomware negotiators to assist in transactions involving sanctioned entities.
Law enforcement previously disrupted LockBit by seizing its infrastructure, obtaining over 2,500 decryption keys to aid victims.
Europol continues to assist in the recovery process for those affected by LockBit ransomware attacks.