Ukrainian police have carried out nearly two dozen raids targeting alleged associates of a ransomware gang that it blamed for US$500 million in cyberattacks and extortion that hit the US and South Korea especially hard.
A police statement on Wednesday said that 21 raids were conducted on the homes of suspects affiliated with the Clop ransomware gang in Kiev and elsewhere, with computer equipment and about 5 million hryvnia (US$182,730) in cash seized.
Six defendants who carried out attacks on firms in the US and South Korean were detained, and face up to eight years in prison for contravening computer crime and money-laundering laws, police said, adding that the probe was ongoing.
The most potent ransomware gangs are tolerated by the Kremlin and out of reach of Western law enforcement, but Russia does not prosecute or extradite them.
Video posted by the Ukrainian police showed South Korean police taking part in this week’s raids, where cash, cellphones and vehicles were also seized.
Four South Korean firms had been hit by the gang with ransomware — which scrambles data that can only be unlocked with a software key obtained by paying the criminals — and paid ransoms, the police said.
The gang targeted US universities such as Stanford Medical School and the University of Maryland, they added.
Wednesday’s raid “is a continuation of the much more aggressive posture that law enforcement has taken against ransomware gangs this year,” Recorded Future analyst Allan Liska said. “It really does feel like law enforcement has figured out how to attack the ransomware scourge, and hopefully, will slow down the attacks.”
After last month’s attack on the Colonial Pipeline affected fuel shipments to the US east coast, the White House began taking ransomware criminals as seriously as it does terrorists, and many are lying low.
The author of the Colonial attack went into hiding and a different group, Avaddon, suddenly announced its retirement.
However, cybersecurity analysts say that such retirements are not new and can be a ruse to thwart law enforcement.
A ship that appears to be taking on the identity of a scrapped gas carrier exited the Strait of Hormuz on Friday, showing how strategies to get through the waterway are evolving as the Middle East war progresses. The vessel identifying as liquefied natural gas (LNG) carrier Jamal left the Strait on Friday morning, ship-tracking data show. However, the same tanker was also recorded as having beached at an Indian demolition yard in October last year, where it is being broken up, according to market participants and port agent’s reports. The ship claiming to be Jamal is likely a zombie vessel that
German Chancellor Friedrich Merz’s conservative Christian Democratic Union (CDU) yesterday faced a regional election battle in Rhineland-Palatinate, now held by the center-left Social Democratic Party (SPD). Merz’s CDU has enjoyed a narrow poll lead over the SPD — their coalition partners at the national level — who have ruled the mid-sized state for 35 years. Polling third is the far-right Alternative for Germany (AfD), which spells a greater threat to the two centrist parties in several state elections in September in the country’s ex-communist east. The picturesque state of Rhineland-Palatinate, bordering France, Belgium and Luxembourg and with a population of about 4 million,
LAW CONSTRAINTS: The US has been pressing allies to send warships to open the Strait, but Tokyo’s military actions are limited under its postwar pacifist constitution Japan could consider deploying its military for minesweeping in the Strait of Hormuz if a ceasefire is reached in the war on Iran, Japanese Minister of Foreign Affairs Toshimitsu Motegi said yesterday. “If there were to be a complete ceasefire, hypothetically speaking, then things like minesweeping could come up,” Motegi said. “This is purely hypothetical, but if a ceasefire were established and naval mines were creating an obstacle, then I think that would be something to consider.” Japan’s military actions are limited under its postwar pacifist constitution, but 2015 security legislation allows Tokyo to use its Self-Defense Forces overseas if an attack,
Ugandan wildlife authorities have reintroduced rhinos into a remote protected area where they were once poached into extinction, an event seen by conservationists as a milestone in efforts to support the recovery of a species threatened by poaching. On Tuesday, two southern white rhinos from a private ranch in the East African country were reintroduced into Kidepo Valley National Park in the country’s northeast. Two more rhinos in metallic crates arrived on Thursday. There have been no rhinos in the park since 1983, the result of poaching. However, a private ranch in central Uganda — the Ziwa Rhino Sanctuary — has been