• Send Us A Tip
  • Calling all Tech Writers
  • Advertise
Thursday, June 11, 2026
  • Login
TechStory
  • News
  • Crypto
  • Gadgets
  • Memes
  • Gaming
  • Cars
  • AI
  • Startups
  • Markets
  • How to
No Result
View All Result
  • News
  • Crypto
  • Gadgets
  • Memes
  • Gaming
  • Cars
  • AI
  • Startups
  • Markets
  • How to
No Result
View All Result
TechStory
No Result
View All Result
Home News

Russian intelligence services are colluding with ransomware gangs, report

by Aashish Sehrawat
August 17, 2021
in News, World
Reading Time: 2 mins read
0
Russian intelligence services are colluding with ransomware gangs, report

Credit: Analyst1

TwitterWhatsappLinkedin
Credit: Analyst1

According to new report from cybersecurity firm Analyst1, Russian intelligence services are partnering with prominent ransomware groups in an attempt to hack US government-affiliated organisations.

You might also like

Salesforce Cuts Jobs, Offers Generous Severance Package

Corporate Divergence Sam Altman’s Eyeball-Scanning Startup Downsizes as OpenAI Files for Historic IPO

Elon Musk’s xAI and SpaceX Hit with Massive Mississippi Class Action Lawsuit Over Data Center Noise Nuisance

According to the study, two Russian intelligence agencies, the Foreign Intelligence Service (SVR) and the Federal Security Service (FSB), collaborated with members of several cybercrime gangs to develop and deploy proprietary malware targeted at US government networks.

“Multiple individuals who conduct ransomware attacks and are affiliated with Russian-based criminal organisations do in fact have alliances with the Russian government,” the report says.

“The Russian Federal Security Service employed individuals responsible for running multiple criminal organisations. One group conducted ransomware attacks, while the other specialized in banking malware operations.”

According to the experts, a variant of the Ryuk ransomware strain known as Sidoh was utilised by hackers to assault government-affiliated entities in the United States. For espionage purposes, the software allowed cyber criminals to gather keystrokes and confidential data. According to the research, the Sidoh malware was most likely distributed between June 2019 and January 2020.

Sidoh can hide itself in the background of Windows workstations, according to Jon DiMaggio, author of the Analyst1 study. It searches documents for keywords like ‘weapon’ and ‘top secret,’ then sends the data to the hackers in a stealthy manner.

“Sidoh’s creators also purposed it to target financial institutions searching for SWIFT and IBAN-related data. This could indicate a desire to target financial institutions,” the report states.

In one particular incident, EvilCorp members attacked an American organisation in October 2020, only two months later targeting the same victim with the same hacking tools, infrastructure and malicious scripts, as was the case with another group called SilverFish.

DiMaggio told his team to use open source and propriety material to identify individual members of the Russian intelligence services ransomware groups.

“We took a lot of data and hunted for new malware, analysed it to see how it worked and what it did, and researched connections to the names and handles of the individuals and gangs, dark web, and hacker forum activity,” DiMaggio said.

According to the research, the attacks carried out with Sidoh have all the characteristics of an SVR cyber operation. The researchers are convinced that the Russian government is behind the attacks in Sidoh, but they need additional proof to establish it definitely. The Russian government has long been accused of shielding domestic cyber criminals as long as they do not attack Russian businesses.

Six Russian technology companies were sanctioned by the US Treasury Department in April for allegedly assisting government hackers engaging in “dangerous and disruptive cyber assaults.” According to the Department, such companies were constructing infrastructure and tools for Kremlin Intelligence Services, offering expertise, and carrying out hostile cyber actions on their behalf.

Last month, US security agencies issued a joint report warning that hackers linked to Russia’s GRU (military intelligence agency) Unit 26165 were waging a global campaign against government bodies, energy companies, media outlets, think tanks, and political parties in the US and Europe. Threat actors were spotted as part of the effort attempting to compromise passwords by continually attempting different password combinations until they gained access.

Tags: evilcorpHackingransomwareRussiasidohsilverfishtreasuryUSA
Tweet54SendShare15
Previous Post

Bitcoin, Ethereum and ADA tops list of most popular cryptocurrencies in Singapore

Next Post

GM’s Chevrolet Bolt battery EVs battery replacement to start this month

Aashish Sehrawat

Recommended For You

Salesforce Cuts Jobs, Offers Generous Severance Package

by Afeefa Ansari
June 11, 2026
0
Salesforce

Salesforce, one of the world’s largest cloud software companies, has just announced another round of job cuts as it continues to reshape its workforce around artificial intelligence and...

Read more

Corporate Divergence Sam Altman’s Eyeball-Scanning Startup Downsizes as OpenAI Files for Historic IPO

by Anochie Esther
June 11, 2026
0
Sam Altmans eye scanning startup layoff

A striking tale of two corporate trajectories is playing out across the tech sector. While generative artificial intelligence continues to attract historic waves of investment, other foundational tech...

Read more

Elon Musk’s xAI and SpaceX Hit with Massive Mississippi Class Action Lawsuit Over Data Center Noise Nuisance

by Anochie Esther
June 11, 2026
0
xAI data center noise lawsuit

A major legal battle has emerged at the intersection of the artificial intelligence boom and environmental regulation. According to a Reuters report made public on June 9, 2026,...

Read more
Next Post
GM’s Chevrolet Bolt battery EVs battery replacement to start this month

GM's Chevrolet Bolt battery EVs battery replacement to start this month

Please login to join discussion

Techstory

Tech and Business News from around the world. Follow along for latest in the world of Tech, AI, Crypto, EVs, Business Personalities and more.
reach us at info@techstory.in

Advertise With Us

Reach out at - info@techstory.in

Aviator Game India 2026

BROWSE BY TAG

#Crypto #howto 2024 acquisition AI amazon Apple Artificial Intelligence bitcoin Business China cryptocurrency e-commerce electric vehicles Elon Musk Ethereum facebook funding Gaming Google India Instagram Investment ios iPhone IPO Market Markets Meta Microsoft News OpenAI samsung Social Media SpaceX startup startups tech technology Tesla TikTok trend trending twitter US

© 2025 Techstory.in

No Result
View All Result
  • News
  • Crypto
  • Gadgets
  • Memes
  • Gaming
  • Cars
  • AI
  • Startups
  • Markets
  • How to

© 2025 Techstory.in

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?