logo

Law Enforcement Infiltrate and Seize Hive Ransomware Operation

ID: 0274547e-bcbe-5304-874d-c2ee57a4a085

STIX ID: report--0274547e-bcbe-5304-874d-c2ee57a4a085

Feed Name: WatchGuard Secplicity Blog

Threat Score
75/100

Date Published: 2023-01-27

Date Updated: 2026-05-01

Author: The Editor

...
...

**Executive Summary:** The U.S. Department of Justice, FBI and international partners infiltrated and seized the Hive ransomware infrastructure, recovering decryption keys used to restore files for 336 of approximately 1,500 victims and preventing roughly $130M in ransom payments; the report details Hive's RaaS double-extortion model, 80/20 affiliate split, ties to Conti, targeted sectors (education, healthcare, legal, finance), and notes potential rebranding/retooling by operators.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.