Categories: Technology

The global cybercrime gang ‘Hive’ has reportedly been dismantled

According to Europol, a dangerous gang of cybercriminals has been dismantled in Ukraine. The group is said to have carried out ransomware attacks worldwide.

Cybercrime exposed: The gang from Ukraine attacked the servers of large companies or organizations in more than seventy countries and caused hundreds of millions of euros in damage, Europol announced in The Hague on Tuesday.

Despite the ongoing war in Ukraine, about thirty buildings were searched on Tuesday. According to Europol, the alleged gang leader (32) and his four main accomplices were arrested. They are said to be part of a network that is held responsible for large-scale ransomware attacks.

Action of cyber criminals

According to Europol, the gang placed malicious software in the servers, blocking data and systems. Data and systems were only released after large amounts of ransoms had been paid.

The criminals used the ransomware programs LockerGoga, MegaCortex, HIVE and Dharma, among others, to carry out their attacks.

The researchers discovered that more than 250 servers of large companies or organizations had been attacked. The operation involved Europol and the judicial authority Eurojust in The Hague, as well as investigators from seven countries, including Germany and Switzerland.

In this country, according to a Europol announcement, the Federal Police Office (Fedpol), the Basel-Landschaft Police, the Public Prosecutor’s Office of the Canton of Zurich and the Cantonal Police of Zurich were involved.

According to the information, the investigations started in 2019 at the initiative of France. The first arrests and searches took place in 2021.

“An important impetus for the current success was provided by investigations by the police headquarters in Reutlingen, which became public in January 2023. At that point, the technical infrastructure was destroyed and a Hive darknet site was shut down. According to a spokesperson for the Stuttgart public prosecutor’s office, it was possible to gain access to the hackers’ chats and data and thus ultimately identify the suspects.

As “Spiegel” writes, researchers suspect that many ransomware extortionists operate from Russia. That’s why the “shutdown banner” on Hive’s darknet page was probably also published in Russian.

Sources

  • Press agency DPA
  • europol.europa.eu: International collaboration leads to dismantling of ransomware group in Ukraine amid ongoing war (November 28, 2023)
  • spiegel.de: Investigators arrest suspected hackers in Ukraine

(t-online/dsc)

Source: Watson

Share
Published by
Ella

Recent Posts

Terror suspect Chechen ‘hanged himself’ in Russian custody Egyptian President al-Sisi has been sworn in for a third term

On the same day of the terrorist attack on the Krokus City Hall in Moscow,…

1 year ago

Locals demand tourist tax for Tenerife: “Like a cancer consuming the island”

class="sc-cffd1e67-0 iQNQmc">1/4Residents of Tenerife have had enough of noisy and dirty tourists.It's too loud, the…

1 year ago

Agreement reached: this is how much Tuchel will receive for his departure from Bayern

class="sc-cffd1e67-0 iQNQmc">1/7Packing his things in Munich in the summer: Thomas Tuchel.After just over a year,…

1 year ago

Worst earthquake in 25 years in Taiwan +++ Number of deaths increased Is Russia running out of tanks? Now ‘Chinese coffins’ are used

At least seven people have been killed and 57 injured in severe earthquakes in the…

1 year ago

Now the moon should also have its own time (and its own clocks). These 11 photos and videos show just how intense the Taiwan earthquake was

The American space agency NASA would establish a uniform lunar time on behalf of the…

1 year ago

This is how the Swiss experienced the earthquake in Taiwan: “I saw a crack in the wall”

class="sc-cffd1e67-0 iQNQmc">1/8Bode Obwegeser was surprised by the earthquake while he was sleeping. “It was a…

1 year ago