Federal prosecutors have unsealed a 2024 indictment charging three Russian nationals and two web hosting services with facilitating cyberattacks and money laundering that victimized cybercrime targets of $62 million.
The indictment, filed in US federal court, alleges that the defendants operated "bulletproof" hosting services designed to evade law enforcement detection. These platforms provided infrastructure specifically marketed to cybercriminals seeking anonymity for their operations.
The three Russian nationals are accused of knowingly supporting threat actors conducting ransomware attacks, data theft schemes, and other cybercrimes. The web hosting services allegedly maintained servers in multiple jurisdictions to complicate investigation efforts.
Bulletproof hosting remains a persistent challenge for cybersecurity authorities. These services typically operate with minimal terms of service enforcement, encrypted customer communications, and rapid takedown resistance. They deliberately cater to criminal clientele and profit directly from cybercriminal activity.
The $62 million figure represents confirmed losses traced directly to attacks facilitated through these hosting services. Investigators identified connections between the defendants and multiple ransomware gangs and cybercriminal groups operating across Eastern Europe and beyond.
The case reflects broader US efforts to disrupt the infrastructure supporting transnational cybercrime. Federal agencies have intensified prosecutions targeting not just the hackers themselves, but the service providers enabling their operations.
Despite the indictment, the defendants remain at large. Extradition from Russia remains unlikely given the country's limited cooperation with US law enforcement on cybercrime matters. The charges carry substantial federal penalties including conspiracy, computer fraud, and money laundering counts.
This enforcement action underscores the complex challenge of disrupting cybercriminal ecosystems. While shuttering individual hosting platforms proves possible, defendants frequently relocate services or rebrand operations to continue serving criminal markets. Sustained pressure on infrastructure providers aims to increase operational costs and friction for threat actors.
Authorities have arrested two alleged members of TeamPCP, a hacking group responsible for infecting over 1,000 organizations through supply-chain attacks.
A Georgia police officer used Flock surveillance technology to track the movements of his ex-partner and another officer after their affair ended, according to internal investigation records.
McKesson, a major healthcare and pharmaceutical distributor, confirmed a cybersecurity incident involving unauthorized access to third-party applications. Extortion group ShinyHunters claims responsibility for stealing 284 million patient data records.
Fraudsters are exploiting Microsoft Teams and similar enterprise chat apps to deceive Chinese users into sending large sums of money. The trend has sparked a wave of complaints across the region.