A federal court has sentenced Maksim Silnikau to 16 years in prison for leading the Ransom Cartel ransomware operation. The 40-year-old Belarusian national was convicted of conspiracy to commit offenses against the United States, conspiracy to commit wire fraud, and aggravated identity theft. Silnikau created and administered the Ransom Cartel ransomware strain in 2021, according to the U.S. Department of Justice.
Silnikau had been active in Russian-speaking cybercrime forums since at least 2005 and was a member of the cybercrime website Direct Connection between 2011 and 2016. Beginning in May 2021, he developed the ransomware scheme and recruited participants through these forums. He distributed stolen credentials linked to compromised computers and provided tools designed to encrypt or lock victim systems.
The operation relied on a hidden website that Silnikau maintained for coordinating attacks. This platform allowed conspirators to communicate with each other, interact with victims, send and negotiate ransom demands, and manage the distribution of funds. The infrastructure supported the group's double extortion tactics, which involved both encrypting victim data and threatening to publish stolen information unless ransoms were paid.
Between 2021 and 2023, Ransom Cartel conspirators attacked at least 18 companies worldwide, including organizations in California, New York, Nebraska, and multiple countries outside the United States. The attackers demanded payment in exchange for decryption keys or promises not to publish stolen data. The operation's activities were disrupted following Silnikau's arrest in July 2023.
Silnikau was extradited from Poland to face prosecution in the Eastern District of Virginia and the District of New Jersey. The case involved coordination between multiple federal agencies, including the U.S. Secret Service, FBI field offices in Kansas City and Albany, and the Justice Department's Office of International Affairs. Organizations should maintain robust backup systems, implement network segmentation, and monitor for unauthorized access to reduce ransomware risk.
Source: https://thecyberexpress.com/ransom-cartel-ransomware/


