The Department of Justice (DOJ) has charged a suspect from Ukraine and a Russian national over a July ransomware attack against a U.S. company and also seized some $6 million in ransom payments, according to Attorney General Merrick Garland and FBI Director Chris Wray.
“This will not be the last time,” Garland said, adding that the United States will pursue other alleged ransomware actors.
Garland, speaking at a news conference, announced that another alleged ransomware attacker, Yevgeniy Polyanin, a Russian national, was also charged. Polyanin was also described as an REvil operative.
Vasinskyi, he added, was charged just six weeks after the July attack and that “his arrest demonstrates how quickly we will act, alongside our international partners, to identify, locate and apprehend alleged cyber criminals no matter where they are.”
Both Vasinskyi and Polyanin were each charged with one count of conspiracy to commit fraud and related activity in connection with computers, nine counts of intentional damage to a protected computer, and one count of conspiracy to commit money laundering, according to the charging documents.
Vasinskyi, 22, was being held in Poland pending U.S. extradition proceedings, while Polyanin, 28, remained at large, according to Garland.
One of the most widespread ransomware attacks came with the corruption of a widely used software tool made by Kaseya. Many Kaseya customers were infected at once with REvil encryption. Some paid ransoms, though a master decryption key was eventually recovered by authorities and distributed weeks later.
Up to 1,500 businesses around the world have been affected by ransomware attacks centered on Kaseya, which provides software tools to IT outsourcing shops. Such companies typically handle back-office work for companies too small or modestly resourced to have their own tech departments.
Previously, the United States recovered about $4.4 million of the ransomware payment that pipeline operator Colonial Pipeline paid to the DarkSide ransomware group following the attack, which led to gas shortages across the East Coast.