U.S. Bans Crypto Addresses Tied to LockBit Ransomware Group From Financial System

CoinDeskPolicy发布于2024-02-19更新于2024-02-21

文章摘要

LockBit hit more than 2,000 different victims, who forked out north of $120 million in payments, according to a DOJ press release.

  • The Office of Foreign Asset Control named two Russian nationals and identified 10 bitcoin and ether addresses after an international operation gained control of the organization's website.
  • Law enforcement agencies said they will distribute decryption keys to victims.
27.5K

The U.S. Treasury Department's sanctions watchdog added nearly a dozen bitcoin and ether addresses to its global blacklist, alleging they were used by ransomware purveyors.

The Office of Foreign Asset Control (OFAC) named Artur Sungatov and Ivan Kondratyev, two Russian nationals indicted on charges tied to the deployment of ransomware, and identified 10 bitcoin and ether addresses (none of which containing any funds as of press time), in a statement on Tuesday, banning U.S. entities from providing any kind of financial services to the two. According to OFAC and the U.S. Department of Justice, they are part of the LockBit ransomware group, one of the world's most prolific ransomware distributors accused of stealing more than $120 million from over 2,000 victims in the past few years.

Ransomware attacks let malicious actors lock victims out of their computers and networks unless they pay a fee, often in cryptocurrency.

Advertisement
Advertisement

An international effort by the DOJ, Europol, the U.K. National Crime Agency and agencies in several other countries seized LockBit's website and various pages earlier this week in an effort dubbed Operation Cronos. The law enforcement agencies announced they would be distributing decryption keys to victims, allowing them to regain access to their devices.

According to a press release from Europol, more than 200 cryptocurrency accounts tied to LockBit have been frozen, while authorities in the U.S., U.K. and EU have all seized various parts of the ransomware group's infrastructure.

Some of the addresses listed by OFAC on Tuesday were deposit addresses for KuCoin, Coinspaid and Binance, according to data from Arkham Intelligence.

LockBit's victims included municipal entities and private companies around the world.

"The LockBit ransomware variant, like other major ransomware variants, operates in the 'ransomware-as-a-service' (RaaS) model, in which administrators, also called developers, design the ransomware, recruit other members — called affiliates — to deploy it, and maintain an online software dashboard called a 'control panel' to provide the affiliates with the tools necessary to deploy LockBit," the DOJ press release said.

Edited by Sheldon Reback.

你可能也喜欢

Hyperliquid 正在用力杀死 HyperEVM

近期,围绕HyperEVM是否已死的讨论升温。加密KOL直言它是一个巨大的失败。Hyperliquid是一条独立的公链,内部包含两个引擎:高性能的封闭交易引擎HyperCore和兼容以太坊的应用引擎HyperEVM。 两者表现悬殊:交易端持续吸金,占据了链上永续合约大部分成交量,月手续费达数千万美元;而HyperEVM上所有DeFi协议的费用合计不足600万美元,资金与用户活跃度远低于其他主流公链。应用层资金主要集中在流动性质押和借贷,而去中心化交易所(DEX)生态萎靡,因核心撮合功能已被HyperCore独占,导致DEX缺乏存在意义。 HyperEVM发展缓慢的原因主要有四:1. 架构上,核心撮合与流动性被封闭,应用范围受限;2. 共享流动性机制导致应用层趋向垄断,缺乏多样性;3. 团队坚持“无内部人”的公平理念,未对生态进行有效扶持;4. 跨引擎开发体验不佳,存在异步执行等门槛。 有观点认为,HyperEVM的定位本就是HyperCore流动性的“代币化层”,而非通用公链,其冷清是结构使然。然而,这恰恰说明其生态严重依附于交易引擎,未能形成独立、广泛的应用生态。 结论是,Hyperliquid将资源高度集中于交易业务的战略选择,使其在永续市场取得成功,但也注定其应用层只能作为附属存在。目前HyperEVM链上虽有真实资金流动,但未能培育出具有广度和用户留存的应用生态。问题的核心或许不在于它是否已死,而在于它究竟被期望成为一条怎样的链。

marsbit1小时前

Hyperliquid 正在用力杀死 HyperEVM

marsbit1小时前

交易

现货
活动图片