logo

FBI develops decryptor for BlackCat ransomware, seizes gang's website

ID: 21933cc1-462f-5a0b-991d-380d612704a7

STIX ID: report--21933cc1-462f-5a0b-991d-380d612704a7

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2023-12-19

Date Updated: 2026-04-26

Author: Connor Jones

...
...

The FBI, in coordination with international partners, disrupted the ALPHV/BlackCat ransomware operation by gaining access to Tor-hosted infrastructure, seizing assets and keys, and producing a decryptor offered to hundreds of victims (authorities estimate roughly $68M in ransom payments avoided); the gang has contested the seizure and intermittently reclaimed its sites while continuing to publish victim names and restructure affiliate incentives, creating ongoing operational risk and a possible shift toward more aggressive targeting.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.