In a coordinated crackdown on Wednesday, the United States, the United Kingdom, and Australia imposed sanctions on a Russian company accused of providing a digital sanctuary for cybercriminals.
The targeted firm, based in St. Petersburg, is alleged to have supplied secure server space and technical support to groups behind ransomware attacks and other malicious online activities. Such “bulletproof” hosting services, as they are known, allow criminals to operate with little fear of detection or legal repercussions.
According to officials, this particular enterprise has aided notorious ransomware gangs, including Lockbit, BlackSuit, and Play. Its systems were also used in disruptive attacks that overwhelmed U.S. corporate networks and critical infrastructure. An affiliated entity is said to have backed these operations.
“We are sending a clear message: providing the tools for cybercrime will not be tolerated,” a senior Treasury official stated. “This joint action shows our unified resolve to disrupt the digital underground and safeguard our economies.”
The sanctions block the assets and interests of five executives and seven companies linked to the firm and another Russian hosting group. Among those blacklisted are the firm’s director, a coordinator of payments, and a legal and financial assistant. Two leaders of the second group were also targeted for their attempts to bypass earlier penalties.
The designated companies span multiple jurisdictions, including entities in Russia, the United Kingdom, Serbia, and Uzbekistan.
Under the measures, any assets these individuals or firms hold within the U.S. are frozen, and American citizens are barred from doing business with them. Financial institutions that continue to engage with the sanctioned parties risk facing their own penalties.