REvil arrested in Russia and seized more than 700 million at the request of U.S. authorities



The Federal Security Service of the Russian Federation announced on January 14, 2022 that it had arrested 14 members of the ransomware group REvil. Along with this, a house search resulted in the seizure of virtual currency, a total of about 6.6 million dollars (about 750 million yen) in cash, and 20 luxury cars. It is reported that some of the arrested members were involved in the 2021 oil pipeline outage.

Подробная информация :: Федеральная Служба Безопасности (Официальное сообщение)
http://www.fsb.ru/fsb/press/message/single.htm%21id%3D10439388%40fsbMessage.html

Background Press Call by a Senior Administration Official on Cybersecurity | The White House
https://www.whitehouse.gov/briefing-room/press-briefings/2022/01/14/background-press-call-by-a-senior-administration-official-on-cybersecurity/

FSB arrests REvil ransomware gang members --The Record by Recorded Future
https://therecord.media/fsb-raids-revil-ransomware-gang-members/

Russia takes down REvil hacking group at US request --FSB | Reuters
https://www.reuters.com/technology/russia-arrests-dismantles-revil-hacking-group-us-request-report-2022-01-14/

Russia-based REvil has hit ransomware attacks on large companies such as PC maker Acer , meat giant JBS , and major IT management service Kaseya, and has caused great damage to the global economy. is. In addition, the ransomware attack conducted by REvil's affiliated group DarkSide against Colonial Pipeline, a major oil pipeline in the United States, shut down the country's largest oil pipeline and there is concern that a serious fuel shortage will occur. , Not only corporate activities but also civil life is seriously damaged.

Regarding the REvil, the Federal Security Service of the Russian Federation said, 'We worked with the Ministry of Interior's Investigation Bureau to control the illegal activities of members of organized crime groups in Moscow and Moscow, Leningrad and St. Petersburg, and Lipetsk.' Announced that they have arrested members of REvil.

You can see the moment of arrest by watching the following video released by a Russian news agency.

Задержание группировки хакеров, рассылавших вирусы для вымогательства денег --YouTube


A man (red frame) who appears from a room in the apartment and an investigator who rushes into the room.



A man is secured and handcuffed on his back.



14 members of REvil were arrested in this investigation.



426 million rubles (about 640 million yen) including virtual currency and 600,000 dollars (about 68 million yen) and 500,000 euros (about 65 million yen) by house search conducted in 25 places Money, PCs and virtual currency wallets used for crimes, and 20 luxury cars purchased with money earned from crimes were confiscated.



The Federal Security Service of the Russian Federation said the investigation was at the request of US authorities and that the success of the investigation was reported to the United States after the arrest. It is said that it is unusual for Russia and the United States, which continue to be tense over the Ukraine issue, to cooperate. However, since there is no agreement on the delivery of criminals between the two countries, it is unlikely that the arrested REvil members will be sent to the United States. Members arrested this time have been charged by Russian authorities and could be sentenced to up to seven years in prison.

In a press release, a senior U.S. government official said, 'We welcome the Kremlin's legal action to deal with ransomware. Some of those arrested this time are 2021. I've heard that some criminals have attacked the Colonial Pipeline in 1945. We have decided to legalize anyone who has made a ransomware attack on the United States, including an attack on JBS, Colonial Pipeline, and Kaseya. I promise. '

Following a series of ransomware damages, the US government has raised the threat of ransomware attacks to the same level as terrorism and is becoming more vigilant. In June 2021, President Joe Biden of the United States and President Vladimir Putin of Russia had a direct dialogue and agreed to work on measures against cybercrime.

President Biden Shows Putin 'Cyber Attack Banned Area'-GIGAZINE


by Gage Skidmore

in Security, Posted by log1l_ks