logo

US, UK, Australia sanction Russian national after major Australian ransomware attack

ID: c54bbfa7-3ad0-5d7e-bff3-955431b6a28c

STIX ID: report--c54bbfa7-3ad0-5d7e-bff3-955431b6a28c

Feed Name: CyberScoop

Threat Score
78/100

Date Published: 2024-01-23

Date Updated: 2026-04-21

Author: AJ Vicens

...
...

Governments of the U.S., U.K., and Australia sanctioned Russian national Alexander Ermakov for his role in the October 2022 REvil/Sodinokibi ransomware attack on Medibank, which compromised health insurance data for nearly 4 million Australians (about 9.7 million records). The notice links Ermakov to the notorious REvil group (also tied to the July 2021 Kaseya incident), notes ongoing investigations and arrest efforts, and recalls prior U.S. reward and legal actions targeting REvil operators.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.