logo

EU Sanctions Vitaly Kovalev, Ransomware Leader of Trickbot Group

ID: 51e803b9-bb68-532b-b9a1-8b67095ba1d7

STIX ID: report--51e803b9-bb68-532b-b9a1-8b67095ba1d7

Feed Name: ThreatCluster

Threat Score
78/100

Date Published: 2026-07-15

Date Updated: 2026-07-17

...
...

On July 14, 2026, EU authorities, coordinated with the U.S. and U.K., sanctioned Vitaly "Stern" Kovalev for leading the Trickbot ransomware group linked to more than $300 million in ransom payments; the group deployed high-impact ransomware strains such as Conti and Ryuk against critical sectors including healthcare and finance, and sanctions also targeted infrastructure providers enabling the criminal ecosystem.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.