Threat Intel

Comment: Russia takes down REvil hacking group at U.S. request

By

John Filitz

14 January 2022

labs2022-06-russia-takes-down-revil-hacking-group-us-request

Bulletin

Infosec

What’s the news?

Russia has dismantled ransomware crime group REvil at the request of the United States in an operation in which it detained and charged the group’s members, according to the FSB domestic intelligence service.

 

 

Tessian’s take from Paul Laudanski, Head of Threat Intelligence:

 

This is the first time, in a while, that the U.S. and Russian have cooperated on such an investigation, so hopefully it is an indication of relations warming up between the two countries.

 

Against the backdrop of geopolitical tensions between the Russian Federation and the U.S. concerning Ukraine and Russia’s talk surrounding sending troops to Latin America, the REvil takedown has certainly come out of the blue. But while the Russian Federation is asserting that the REvil infrastructure has been taken down, this likely does not mark the end of this group or its lucrative ransomware-as-a-service model. REvil sprouted up after the takedown of another group, GandCrab, and history has shown us that groups like REvil will resurface again – especially with its ransomware-as-a-service lucrative model. It may not be the same name, but the model and the technology will certainly return along with people associated with REvil.

 

I do not believe this is the end – REvil 2.0 will learn from this incident and prepare for its return or another incarnation.

John.png

John Filitz

Sr. Technical Cybersecurity Content Writer

Responsible for Technical Cybersecurity Content Writing at Tessian. Proficient enterprise IT subject matter areas are varied and include cybersecurity, cloud adoption, industry vertical technology trends, disruptive emerging technologies, and navigating the hybrid workplace. Previous work assignments have included leading enterprise IT innovation, research and advisory services for Fortune 1000 clients across industry verticals: Finance, retail, healthcare, manufacturing, telecommunications and IT, to name a few.

subscribe-newsletter.exe

Hear from the Security Team

Subscribe for Email Updates.

We will be rolling out new articles and guides on a regular basis. Sign up to get the latest delivered to you. Get new articles and guides, a curated list of events and job openings, and more.