Article Details
Scrape Timestamp (UTC): 2024-11-29 17:52:59.302
Original Article Text
Click to Toggle View
Russia arrests cybercriminal Wazawaka for ties with ransomware gangs. Russian citizen and notorious ransomware affiliate Mikhail Pavlovich Matveev (also known as Wazawaka, Uhodiransomwar, m1x, and Boriselcin) has been reportedly indicted in Russia for his involvement in several hacking groups. While the prosecutor's office has yet to release any details on the individual's identity (described as a "programmer" in court documents), the individual is Matveev, according to an anonymous source of the Russian state-owned news agency RIA Novosti. "At present, the investigator has collected sufficient evidence, the criminal case with the indictment signed by the prosecutor has been sent to the Central District Court of the city of Kaliningrad for consideration on the merits," the Russian Ministry of Internal Affairs said in a statement. As first spotted by cyber policy expert Oleg Shakirov, Matveev is accused of developing ransomware (described by the prosecutor's office notes as "specialized malicious software" that can encrypt files and data) that he planned to use for encrypting the data "of commercial organizations with subsequent ransom for decryption." Last year, in May 2023, the U.S. Justice Department also filed charges against Matveev for his involvement in the Hive and LockBit ransomware operations that targeted victims across the United States. He is also believed to be "Orange," the original creator and admin of the Ramp hacking forum, and the original admin of the Babuk ransomware operation, which split up after members split on whether they should publish data stolen from the Washington DC Capital Police Force. A Justice Department press release and unsealed indictments in New Jersey and the District of Columbia provide an approximate timeline of his activity while working with the three ransomware gangs: Matveev was also sanctioned by the Department of the Treasury's Office of Foreign Assets Control (OFAC) for launching cyberattacks against U.S. entities, including U.S. law enforcement and critical infrastructure organizations. The U.S. Department of State is also offering a reward of up to $10 million for any information that could lead to his arrest or conviction for transnational organized crime. Matveev has had a very vocal online presence. He frequently talked with cybersecurity researchers and professionals and openly discussed his cybercrime activity using his (still active) Twitter account, RansomBoris. After being sanctioned by the U.S., Matveev openly taunted U.S. law enforcement, tweeting a picture of his wanted poster on a t-shirt.
Daily Brief Summary
Russian national Mikhail Pavlovich Matveev, known by multiple aliases including Wazawaka and Boriselcin, has been arrested and indicted in Russia for his ties to ransomware operations and hacking groups.
Accused of developing ransomware aimed at encrypting commercial organizations’ data for ransom, his case is currently headed to the Central District Court of Kaliningrad.
The U.S. Justice Department has also charged Matveev for his involvement with prominent ransomware groups such as Hive and LockBit, targeting various victims in the U.S.
Matveev is identified as the original creator and administrator of the Ramp hacking forum and the Babuk ransomware, which was notably involved in the Washington DC Capital Police data exposure.
The U.S. Department of the Treasury has sanctioned him for attacks against U.S. entities, including law enforcement and critical infrastructure, while the State Department offers a $10 million reward for information leading to his capture or conviction.
Despite the indictments and sanctions, Matveev maintained a public online presence, engaging with cybersecurity experts and even taunting U.S. enforcement through social media.