AUTO-UPDATED

U.S. Sanctions First VPN Service and Malware Cryptor Seller Over Ransomware Support

The U.S. Treasury Department has sanctioned individuals and the First VPN Service for facilitating global ransomware attacks, while international allies simultaneously targeted Russian state-sponsored cyber espionage networks.

Key Points

  • The U.S. Treasury sanctioned Ukrainian administrator Dmytro Rashevskyi and Belarusian national Yegeniy Vladimirovich Silayev for enabling ransomware operations.
  • First VPN Service (1VPNS) was dismantled in May 2026 for providing infrastructure to cybercriminals targeting U.S. hospitals, financial firms, and municipal governments.
  • The U.K. and E.U. sanctioned 24 individuals and entities, including GRU and FSB members, for conducting disruptive cyber operations and hybrid threats.
  • The FBI warned that FSB Center 16 actors are actively exploiting vulnerable routers and networking devices to infiltrate critical infrastructure sectors globally.
  • CISA added CVE-2008-4128 to its Known Exploited Vulnerabilities catalog, mandating that federal agencies apply security patches by July 16, 2026.

Why it Matters

These coordinated international sanctions and security advisories highlight a significant escalation in efforts to disrupt the infrastructure supporting global ransomware and state-sponsored cyber espionage. By targeting the specific tools and networks used by these actors, authorities aim to increase the operational costs for cybercriminals and protect critical infrastructure from persistent foreign threats.
Internet Published by info@thehackernews.com (The Hacker News)
Read original