US, UK, AU Officials Sanction 33-Year-Old Russian Medibank Hacker

A Russian national has been identified and sanctioned by Australia, the United Kingdom, and the United States for his role in the data breach of an Australian health insurance giant.
Aleksandr Gennadievich Ermakov, born May 16, 1990, is a former member of the bygone REvil ransomware gang.
Online, he goes by various monikers: GustaveDore, aiiis ermak, blade runner, and JimJones.
According to authorities, he is responsible for quarterbacking an October 2022 breach of Medibank, a $10 billion Melbourne-based insurer with nearly 4 million existing customers.
In that incident, Ermakov and his colleagues managed to access varied data belonging to 9.7 million current and former Medibank customers.
It included personally identifiable information - names, dates of birth, addresses, and more - for customers and healthcare providers, as well as health records pertaining to mental and sexual health, drug usage, and more.
The hackers leaked all of these records onto the Dark Web.
On Jan. 22, authorities did the best they could by way of retribution.
As part of its prolonged war with cybercrime syndicates, the Australian Ministry of Defence outed Ermakov and imposed a travel ban and financial sanctions.
As the ministry explained in a press release, the financial sanction makes stewarding or providing him with assets, including cryptocurrency wallets and ransomware payments, a criminal offense punishable by up to 10 years in prison plus significant fines.
Piling on, the UK Foreign, Commonwealth & Development Office and US Department of the Treasury's Office of Foreign Assets Control dittoed Australia's bans, freezing any assets he has in either country and adding his name to the Treasury's Specially Designated Nationals and Blocked Persons List.
Especially where finances are concerned.
US officials can't arrest a Russian in Russia, but they can influence the flow of international financial transactions.
Naming an entity to the SDN has a material impact on cybercriminal outfits, most notably ransomware operations, as it covers not only affiliates of these groups, but also any victims who'd otherwise be inclined to pay for the safe return of their data.
Major threat actors have seen serious repercussions as a result of such sanctioning.
Even a travel ban is more than just a bummer for a hacker's future vacations.
Russian Cybercriminals' Worst Fear An even more powerful alternative to Western law enforcement is the occasional Russian crackdown on its own domestic cybercrime.
One would do well to remember that, for all of the bad guys it shields, it was Russia's own police who administered the coup de grace against Ermakov's parent organization, ReVIL, back in 2022.


This Cyber News was published on www.darkreading.com. Publication date: Tue, 23 Jan 2024 21:55:15 +0000


Cyber News related to US, UK, AU Officials Sanction 33-Year-Old Russian Medibank Hacker

Who is Alleged Medibank Hacker Aleksandr Ermakov? - Authorities in Australia, the United Kingdom and the United States this week levied financial sanctions against a Russian man accused of stealing data on nearly 10 million customers of the Australian health insurance giant Medibank. 33-year-old ...
5 months ago Krebsonsecurity.com
US, UK, AU Officials Sanction 33-Year-Old Russian Medibank Hacker - A Russian national has been identified and sanctioned by Australia, the United Kingdom, and the United States for his role in the data breach of an Australian health insurance giant. Aleksandr Gennadievich Ermakov, born May 16, 1990, is a former ...
5 months ago Darkreading.com
FSB arrests Russian hackers working for Ukrainian cyber forces - The Russian Federal Security Service arrested two individuals believed to have helped Ukrainian forces carry out cyberattacks to disrupt Russian critical infrastructure targets. Both suspects were taken into custody one same day in two different ...
7 months ago Bleepingcomputer.com
Russian military hackers target NATO fast reaction corps - Russian APT28 military hackers used Microsoft Outlook zero-day exploits to target multiple European NATO member countries, including a NATO Rapid Deployable Corps. Researchers from Palo Alto Networks' Unit 42 have observed them exploiting the ...
6 months ago Bleepingcomputer.com
Australian government warns of 'large-scale ransomware data breach' - The incident recalls an October 2022 ransomware attack on Medibank, one of the country's largest health insurance providers, that led to the scandalous publication of sensitive healthcare data. As part of the Medibank criminals' extortion attempt, ...
1 month ago Therecord.media
Detained Russian student allegedly helped Ukrainian hackers with cyberattacks - A Russian tech student could face treason charges for helping Ukrainian hackers carry out cyberattacks against Russia. A resident of the Siberian city of Tomsk, Seymour Israfilov was detained by Russian security services in October, but little ...
5 months ago Therecord.media
Russian hackers use Ngrok feature and WinRAR exploit to attack embassies - After Sandworm and APT28, another state-sponsored Russian hacker group, APT29, is leveraging the CVE-2023-38831 vulnerability in WinRAR for cyberattacks. APT29 is tracked under different names and has been targeting embassy entities with a BMW car ...
7 months ago Bleepingcomputer.com
Ukraine says it hacked Russian aviation agency, leaks data - Ukraine's intelligence service, operating under the Defense Ministry, claims they hacked Russia's Federal Air Transport Agency, 'Rosaviatsia,' to expose a purported collapse of Russia's aviation sector. Rosaviatsia is the agency responsible for ...
7 months ago Bleepingcomputer.com
Hacker Conversations: Chris Evans, Hacker and CISO - Chris Evans is CISO and chief hacking officer at HackerOne. SecurityWeek's Hacker Conversations series seeks to understand the mind and motivations of hackers by talking to hackers. Evans challenges the common perception of both hackers and their ...
6 days ago Securityweek.com
Ukraine Arrests Hacker for Assisting Russian Missile Strikes - Ukrainian security services have arrested a hacker for allegedly targeting government websites and providing intelligence to Russia to carry out missile strikes on the city of Kharkiv. Security Service of Ukraine revealed that its cyber unit has ...
5 months ago Infosecurity-magazine.com
HPE: Russian hackers breached its security team's email accounts - Hewlett Packard Enterprise disclosed today that suspected Russian hackers known as Midnight Blizzard gained access to the company's Microsoft Office 365 email environment to steal data from its cybersecurity team and other departments. Midnight ...
5 months ago Bleepingcomputer.com
Feds arrest Russians accused of tech smuggling operation The Register - Three Russian nationals were arrested in New York yesterday on charges of moving electronics components worth millions to sanctioned entities in Russia, pieces of which were later recovered on battlefields in Ukraine. Nikolay Goltsev, a ...
7 months ago Theregister.com
Major Russian delivery company down for three days due to cyberattack - A little-known hacker group claimed responsibility for an attack that has disrupted service for days at CDEK, one of Russia's largest delivery companies. The Russian-speaking hackers, who call themselves Head Mare, said they encrypted the company's ...
1 month ago Therecord.media
Russian hackers stole Microsoft corporate emails in month-long breach - Microsoft disclosed Friday night that some of its corporate email accounts were breached and data stolen by the Russian state-sponsored hacking group Midnight Blizzard. The company detected the attack on January 12th, with Microsoft initiating its ...
5 months ago Bleepingcomputer.com
Russian hackers stole Microsoft corporate emails in month-long breach - Microsoft disclosed Friday night that some of its corporate email accounts were breached and data stolen by the Russian state-sponsored hacking group Midnight Blizzard. The company detected the attack on January 12th, with Microsoft initiating its ...
5 months ago Bleepingcomputer.com
US sanctions Russian for cleaning Ryuk's and oligarchs' cash The Register - A Russian woman the US accuses of being a career money launderer is the latest to be sanctioned by the country for her alleged role in moving hundreds of millions of dollars on behalf of oligarchs and ransomware criminals. Among these was her alleged ...
7 months ago Theregister.com
Who Is Behind Pro-Ukrainian Cyberattacks on Iran? - COMMENTARY. Ukrainian cyber forces have attacked Russian infrastructure and assets almost since the first day of the Russian invasion of Ukraine on Feb. 24, 2022. While its mainstay is denial-of-service attacks that have knocked out the Russian ...
5 months ago Darkreading.com
Latvia confirms phishing attack on Ministry of Defense, linking it to Russian hacking group - The Russian cyber-espionage group known as Gamaredon may have been behind a phishing attack on Latvia's Ministry of Defense last week, the ministry told The Record on Friday. Hackers sent malicious emails to several employees of the ministry, ...
1 year ago Therecord.media
Hacker 'ShinyHunters' Pleads Not Guilty in Cybercrime Case - A hacker known as 'ShinyHunters' has pleaded not guilty in a case of cybercrime. The hacker is accused of taking part in illegal activities to steal data from victims, including passwords, credit card information, and other personal details. The ...
1 year ago Blog.cloudflare.com
Hacking Protected Java-Based Programs - This article provides examples of hacking techniques that can help Java developers avoid vulnerabilities in their programs. It is not intended to train hackers but rather for naive developers who think that standard obfuscators will save them from ...
6 months ago Feeds.dzone.com
Cybersecurity Crisis Looms: FBI Chief Unveils Chinese Hackers' Plan to Target US Infrastructure - As the head of the FBI pointed out Wednesday, Beijing was positioning itself to disrupt the daily lives of Americans if there was ever a war between the United States and China if it were to plant malware to damage civilian infrastructure. U.S. ...
5 months ago Cysecurity.news
Konni Malware Alert: Uncovering The Russian-Language Threat - In the ever-evolving landscape of cybersecurity, a recent discovery sheds light on a new phishing attack being dubbed the Konni malware. This cyber assault employs a Russian-language Microsoft Word document malware delivery as its weapon of choice, ...
7 months ago Securityboulevard.com
Ukraine sacks top cybersecurity officials in corruption probe involving software purchases - KYIV, Ukraine - Ukraine fired its top two civilian cybersecurity officials on Monday as prosecutors announced an embezzlement investigation involving software purchases from 2020-2022 in which the head of the state intelligence service was allegedly ...
7 months ago Abcnews.go.com
GTA 6 Hacker: Life in Secure Hospital for Cybercrime Intent - The teenage hacker who leaked details about Grand Theft Auto 6 is now facing a life sentence in a guarded institution, which is a surprise development. The person, identified as Lapsus, was placed under an indefinite hospital order because of worries ...
6 months ago Cysecurity.news
Ukraine: Hack wiped 2 petabytes of data from Russian research center - Planeta is a state research center using space satellite data and ground sources like radars and stations to provide information and accurate predictions about weather, climate, natural disasters, extreme phenomena, and volcanic monitoring. The ...
5 months ago Bleepingcomputer.com

Latest Cyber News


Cyber Trends (last 7 days)


Trending Cyber News (last 7 days)