Thailand detains Russians who stole $16.5 mln in bitcoins

preview image

25.02.2025

 

Four Russian hackers, members of the 8Base group, used a ransomware virus to hack over a thousand companies and steal millions of dollars worth of cryptocurrency

  В Таиланде задержали четверых россиян, подозреваемых в краже криптовалюты на $16,5 млн.   

Operation PHOBOS AETOR

  This week in Phuket, Thailand, law enforcement agencies from the United States, Switzerland, and the European Union (EU) conducted Operation PHOBOS AETOR. The name refers to the Phobos encryptor used by the detainees.   The operation was coordinated by Europol.   It is reported that with the help of a ransomware virus, four men hacked more than a thousand companies and stole bitcoins (BTC) worth about $16.5 million. All the suspects were hackers from the 8Base group.   During the raid, police seized over 40 pieces of evidence in the form of laptops, smartphones and crypto wallets of the suspects. They have been charged with conspiracy to commit crimes against the US and wire fraud.   The extradition of the detainees has already been requested by Switzerland. The detainees allegedly hacked 17 Swiss firms between April 2023 and October 2024.    

Phobos network and 8Base tactics

  Phobos is a ransomware virus that was first discovered in December 2018. It is considered one of the most popular and effective tools of cybercriminals.   It is usually used to attack small and medium-sized businesses, which often don't have strong enough defenses against such threats. The Ransomware-as-a-Service (RaaS) model makes the virus accessible to a wide range of criminals, which contributes to its spread.   Law enforcement officials said the 8Base group, which uses the Phobos infrastructure, adapted the virus to their needs. The hackers used “double extortion” tactics - not only encrypting victims' data, but also threatening to publish it unless a ransom was paid.   In early 2024, a coalition of 11 countries in coordination with Europol eliminated the popular LockBit encryptor. A Voronezh resident is behind the creation of this malware. Earlier, he was charged with 26 crimes in the United States.
Go back

“Offline” mode