UK and US Sanction 11 Members of the Russia-Based TrickBot Gang
Cyber Security Threat Summary:
The United States, in coordination with the United Kingdom, sanctioned eleven more individuals who are members of the Russia-based Trickbot cybercrime group. The sanctions were provided by the U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC)” (Security Affairs, 2023).
The sanctioned TrickBot members worked as administrators, managers, developers, and coders, who have materially supported the operations of the group. The group has been tied to Russian intelligence services and has targeted the U.S. government, companies and hospitals.
Below is the list of sanctioned individuals:
Security Officer Comments:
TrickBot is a popular Windows based banking Trojan that has been active since around October 2016. The malware has evolved over time to include new features, including powerful password-stealing capabilities.
TrickBot has partnered with various ransomware groups, most notably Ryuk ransomware. Ransomware groups will commonly partner with malware groups to help with initial access. With Ryuk going quiet, the group has since turned to the Conti ransomware gang, who has been using TrickBot almost exclusively for initial access to organizations worldwide.
The investigation conducted by the UK National Crime Agency (NCA) revealed that the group extorted at least $180 million from victims globally, and at least £27 million from 149 UK victims. The ransomware operation also targeted UK hospitals, schools, local authorities and businesses. “These cyber criminals thrive off anonymity, moving in the shadows of the internet to cause maximum damage and extort money from their victims.” UK Foreign Secretary James Cleverly said. “Our sanctions show they cannot act with impunity. We know who they are and what they are doing.
By exposing the actors identities, the government entities hope to disrupt the groups business models, which will make it harder for them to target people, businesses, and institutions.
Suggested Correction(s):
Link(s):
https://securityaffairs.com/150632/cyber-crime/uk-us-sanctioned-11-trickbot-gang-members.html