AI DevwWrld CyberDSA Chatbot Summit Cyber Revolution Summit CYSEC Global Cyber Security & Cloud Expo World Series Digital Identity & Authentication Summit Asian Integrated Resort Expo Middle East Low Code No Code Summit TimeAI Summit

ALPHV operational disruption: FBI BlackCat ransomware strike

Successful sabotage: FBI and international police forces block the ALPHV criminal network

The FBI, thanks to extensive international collaboration, hacked the infrastructure of the ALPHV criminal network also known as BlackCat, obtaining keys to decrypt data of ransomware victims. The operation blocked approximately $68 million in extortion. Despite this, ALPHV may reorganize under another name, maintaining a high threat to global cybersecurity.

This pill is also available in Italian language

In the last few hours, the US DOJ has announced that the FBI has managed to breach the infrastructure of the criminal network known as ALPHV, better known as BlackCat. This action allowed the acquisition of the cryptographic keys to decipher the data of the ransomware victims, facilitating the recovery of the files without giving in to the financial demands of the cybercriminals. This outcome is the result of an undercover operation that lasted for months.

Decreased accessibility to the ALPHV server

For over seven days there has been an absence of connectivity to the portals managed by ALPHV, even those hosted on the Tor network. Initially mistaken for a technical malfunction, it turned out that it was the result of the FBI's investigative maneuvers. The implementation of this strategy prevented the authors of the ransomware from extorting a sum estimated at 68 million dollars, intervening for the benefit of approximately 500 affected entities.

International collaboration in investigations

The effective raid against BlackCat is the result of a synergistic international collaboration which involved, alongside the FBI, European and other nations' anti-cybercrime agencies. Europol, together with police forces from Germany, Denmark, the United Kingdom, the Netherlands, Australia, Spain and Austria, shared intelligence and resources to disrupt the criminal organisation.

History and potential future developments of ALPHV

ALPHV, previously known as DarkSide and then as BlackMatter, stands out for its resilience in reorganizing itself after interventions by the authorities. Despite the deactivation of DarkSide following the Colonial Pipeline attack in 2020 and the brief outage of BlackMatter, the network has continued its malicious activities under new identities. Even in the absence of arrests of key members, there is speculation that the group could re-emerge under other names, thus continuing to pose a risk to global cybersecurity.

Follow us on Facebook for more pills like this

12/20/2023 21:38

Marco Verro

Last pills

Italy's success in cybersecurityHow Italy achieved excellence in global cybersecurity: strategies, collaborations, and international successes

IntelBroker alleged breach of Deloitte systemsServer exposed: how Deloitte's security may have been compromised by a cyber attack

Vo1d infections on Android TV boxes: how to protect your devicesLearn the essential measures to protect your Android TV boxes from the dreaded Vo1d malware and keep your devices safe from cyber threats

Hacker attack in Lebanon: Hezbollah under fireTechnological shock and injuries: cyber warfare hits Hezbollah in Lebanon