Ukrainian charged with involvement in Raccoon Stealer malware service

Share post:

Mark Sokolovsky has been charged for his part in the Raccoon Stealer malware-as-service (MaaS) operation.

The 26-year-old Ukrainian, also known as raccoonstealer, Photix and black21jack77777 was arrested in March 2022 and is now in prison in the Netherlands while awaiting extradition to the United States.

Sokolovsky was arrested by Dutch authorities in collaboration with the FBI and law enforcement partners in the Netherlands and Italy. Together, they managed to dismantle the infrastructure of Raccoon Infostealer and take the existing version of the malware offline.

The FBI was able to collect some of the data stolen by criminals from infected computers using the Raccoon Stealer malware.

“While an exact number has yet to be verified, FBI agents have identified more than 50 million unique credentials and forms of identification (email addresses, bank accounts, cryptocurrency addresses, credit card numbers, etc.) in the stolen data from what appears to be millions of potential victims around the world. The credentials appear to include over four million email addresses. The United States does not believe it is in possession of all the data stolen by Raccoon Infostealer and continues to investigate,” the Department of Justice said.

After the arrest of Sokolovsky, the Raccoon Stealer Group ceased operations, claiming that one of its leading developers had been killed during the invasion of Ukraine. However, in early June, the group resumed operations with the release of a new version built from scratch using C/C++. The new operation also include new back-end, front-end and new data theft capabilities.

The sources for this piece include an article in BleepingComputer.

SUBSCRIBE NOW

Related articles

Cyber Security Today, May 3, 2024 – North Korea exploits weak email DMARC settings, and the latest Verizon analysis of thousands of data breaches

This episode reports on warnings about threats from China, Russia and North Korea, the hack of Dropbox Sign's infrastructure

Hashtag Trending for World Password Day, Thursday, May 2nd, 2024

Security firm Okta warns of an unprecendented password stuffing attack that is piggybacking on regular user’s mobile and...

Google Chrome’s new post-quantum cryptography causes connection issues

The latest update to Google Chrome, version 124, which integrates a new quantum-resistant encryption mechanism, has led to...

UK legislation bans weak passwords

Starting Monday, the UK will enforce new laws banning the sale of devices with weak default passwords such...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways