Ukrainian National Sentenced to Four Years for Role in Conti Ransomware Attacks

Published:

Cyber Warriors Conclave — nine editions, one cyber safe nation

A 44-year-old Ukrainian national has been sentenced to four years in prison for his involvement in the Conti ransomware group, which targeted over 1,000 organizations worldwide before disbanding in 2022, according to the Justice Department.

Oleksii Oleksiyovych Lytvynenko, also known as Alexsey Alexseevich Litvinenko, pleaded guilty in June to conspiracy to commit wire fraud related to these attacks. He admitted to joining the notorious cybercrime group in September 2021, where he developed malware and held data on 12 victims, including eight based in the United States.

“For years, the Conti ransomware group executed a sustained and sophisticated campaign that victimized hundreds of organizations across the United States and abroad, including critical infrastructure entities, causing losses in the millions of dollars,” said A. Tysen Duva, assistant attorney general of the Justice Department’s criminal division.

Details of the Case

When Lytvynenko was arrested in Ireland in July 2023, he was reportedly found asleep near an open laptop running Cobalt Strike. He was extradited to the United States in October 2025. Prosecutors revealed that Lytvynenko and his co-conspirators extorted approximately $634,000 in Bitcoin from two victims in Tennessee, including a government entity that compromised local law enforcement services.

Four of Lytvynenko’s alleged co-conspirators were indicted in 2023 for their roles in the Conti attacks from 2020 to 2022. Conti was one of the most active ransomware groups globally, impacting critical infrastructure providers and leading the U.S. State Department to offer a $10 million reward for information on its leaders.

Continued Threats from Ransomware Groups

Despite disbanding in 2022, members of the Conti group have rebranded under new subgroups, including Zeon, Black Basta, and Quantum. “Lytvynenko and his co-conspirators used Conti ransomware to attack computers and networks in nearly every state, and today’s sentence reflects the gravity and extent of those crimes,” stated Brett Leatherman, assistant director of the FBI’s cyber division.

Law enforcement officials emphasize that ransomware criminals are not anonymous and will face consequences regardless of their location. The FBI and its partners are committed to dismantling the infrastructure of such cybercriminals and bringing them to justice.

For more details, see the full report by CyberScoop.

Follow Cyber Warriors Middle East for further global cybersecurity developments.

Cyber Warriors Conclave Chapter X — Beyond the Ballroom

Related articles

Recent articles

IDScan Confirms Data Breach Exposing 153 Million Driver’s License Scans for Sale on Dark Web

Identity verification firm IDScan has confirmed a data breach that has exposed scans of approximately 153 million driver’s licenses, with the information reportedly available...

NVIDIA and Palantir Collaborate to Enhance Supply Chain Sovereignty with AI Solutions

Palantir Technologies Inc. and NVIDIA have announced a strategic collaboration aimed at enhancing supply chain sovereignty through advanced artificial intelligence (AI) solutions. This partnership...

Microsoft Warns of AI-Enhanced Executive Impersonation and Invoice Fraud Campaigns

In a concerning trend, threat actors are leveraging artificial intelligence (AI) to enhance their tactics in executing executive impersonation and invoice fraud schemes. Recent...

NASA’s SARSAT technology aids in rescue of five fishermen at sea

NASA's Search and Rescue Satellite-Aided Tracking (SARSAT) technology played a crucial role in the rescue of five fishermen off the Gulf Coast of Mississippi...