FBI shuts down servers and website linked to Hive ransomware

Share post:

According to the Justice Department, the servers of the dreaded Hive ransomware group have been occupied by U.S. authorities after law enforcement highjacked its systems and gathered the keys to decrypt its attack software.

“Last night, the Justice Department dismantled an international ransomware network responsible for extorting and attempting to extort hundreds of millions of dollars from victims in the United States and around the world,” U.S. Attorney General Merrick B. Garland said in a statement.

Hive usually targets a victim by stealing sensitive data (emails, documents, pictures, and videos) and then encrypting their computer files, according to the Justice Department. The group would then demand a Bitcoin ransom for the decryption key required to restore the files, as well as further funds in exchange for a promise not to publish the stolen data on the dark web. Hive would publish the stolen data if the victim did not pay.

The group’s website is regarded as one of the most dangerous and prolific hacker gangs that targeted hospitals and public infrastructure. Extortion payments totaling more than $100 million have been received from thousands of victims. The website now displays a message stating that it was seized by an international law enforcement coalition comprised of the department and the FBI.

The operation, which took control of Hive’s servers and websites, was coordinated with German and Dutch law enforcement, according to the agency.

The sources for this piece include articles in Axios and Reuters.

SUBSCRIBE NOW

Related articles

Synology Vulnerability Allows Remote Code Execution

A major security flaw in Synology's DiskStation Manager (DSM) software could allow remote attackers to take full control...

New Browser-in-the-Middle Attack Bypasses MFA, Steals User Sessions in Seconds

A sophisticated cyberattack technique known as Browser-in-the-Middle (BitM) has emerged, enabling hackers to bypass multi-factor authentication (MFA) and...

Oracle Cloud Hit By Biggest Supply Chain Attack of 2025 – 140,000 Businesses At Risk

A significant security breach has compromised Oracle Cloud's infrastructure, exposing approximately 6 million records and placing over 140,000...

CISA Red Team Terminations Raise Concern Over U.S. Cybersecurity

Recent operational upheavals within the Cybersecurity and Infrastructure Security Agency's (CISA) Red Team are prompting serious concerns about...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways