A Ukrainian national has been sentenced to four years in the US for helping the Conti ransomware group target more than 1,000 victims and generate at least $150 million in ransom payments.
Ukrainian national has been sentenced to four years in prison in the US for his role in the Conti ransomware operation, which compromised more than 1,000 victims worldwide and generated at least $150 million in ransom payments.
Oleksii Oleksiyovych Lytvynenko, 44, who previously lived in Cork, Ireland, was sentenced for conspiracy to commit wire fraud in the US. Prosecutors said he worked with other Conti operators to deploy ransomware, steal victim data and extort organizations affected by the attacks.
This was one of the most disruptive ransomware operations between 2020 and 2022. The group targeted corporate networks, healthcare providers, schools, local governments and other critical infrastructure organizations. Its attacks affected victims across around 47 US states, the District of Columbia, Puerto Rico and 31 foreign countries.
The FBI estimated in January 2022 that Conti-related victims had paid more than $150 million in ransoms. The actual financial damage was much higher, as the figure did not include ransom demands, recovery costs, incident-response expenses, business disruption, data theft or reputational damage.
Hacker sentenced
Court records show that Lytvynenko possessed data stolen from 12 Conti victims, including eight organizations in the US. Lytvynenko also admitted that he joined a technical team managed by another Conti conspirator. His role involved coding a malware “loader”, a component designed to install or launch additional malicious programs on compromised systems.
In ransomware attacks, loaders can execute malicious payloads, deploy remote-access tools, establish persistence or distribute ransomware across an enterprise network.
FBI field offices in San Diego, Nashville and El Paso, along with the US Secret Service, investigated the case. Homeland Security Investigations also provided support, while Irish law-enforcement and justice agencies assisted with Lytvynenko’s arrest and extradition.
The conviction highlights continued international efforts to crack down on ransomware operators and developers. US authorities stressed that cybercriminals involved in developing, deploying or profiting from ransomware can face prosecution even when operating outside the United States.
Click Here For The Original Source.
