Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

DippyDem

(659 posts)
Mon Jun 7, 2021, 02:49 PM Jun 2021

US recovers millions in cryptocurrency paid to Colonial Pipeline ransomware hackers

Source: CNN

Washington (CNN)US investigators have recovered millions of dollars in cryptocurrency paid in ransom to hackers whose attack prompted the shutdown of the key East Coast pipeline last month, according to people briefed on the matter.

The Justice Department on Monday is expected to announce details of the operation led by the FBI with the cooperation of the Colonial Pipeline operator, the people briefed on the matter said.
The ransom recovery is a rare outcome for a company that has fallen victim to a debilitating cyberattack in the booming criminal business of ransomware.
Colonial Pipeline Co. CEO Joseph Blount told The Wall Street Journal In an interview published last month that the company complied with the $4.4 million ransom demand because officials didn't know the extent of the intrusion by hackers and how long it would take to restore operations.
But behind the scenes, the company had taken early steps to notify the FBI and followed instructions that helped investigators track the payment to a cryptocurrency wallet used by the hackers, believed to be based in Russia. US officials have linked the Colonial attack to a criminal hacking group known as Darkside that is said to share its malware tools with other criminal hackers.
A spokesman for the Justice Department declined to comment.

Read more: https://www.cnn.com/2021/06/07/politics/colonial-pipeline-ransomware-recovered/index.html



LOL The Russian hackers must be so pissed off. Short article .... may have more added at a later time
41 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
US recovers millions in cryptocurrency paid to Colonial Pipeline ransomware hackers (Original Post) DippyDem Jun 2021 OP
Wow! The police financial fraud division once said to me that it's impossible to recover money catrose Jun 2021 #1
Fortunately, cryptocurrency is located in no one's country. marble falls Jun 2021 #5
Ironic that cryptocurrency may make perps MORE vulnerable to law enforcement. lagomorph777 Jun 2021 #24
That thought occured to me only today. marble falls Jun 2021 #26
So did "they" figure out how to crack cryptocurrency or find out where it goes after it's mitch96 Jun 2021 #29
Anything done digitally is traceable and that includes cryptocurrency. PSPS Jun 2021 #30
Well Done! COL Mustard Jun 2021 #37
Nice news to break before the meeting with Putin Sanity Claws Jun 2021 #2
hubby and i were actually wondering if bitcoin can be marked and traced.. samnsara Jun 2021 #3
But doesn't that defeat the whole purpose of Bitcoin? n/t Yavin4 Jun 2021 #6
Sure Seems The Opposite Of "Crypto"... ProfessorGAC Jun 2021 #10
They aren't "marking" bitcoins, they're trailing transactions. marble falls Jun 2021 #8
Not marked and traced! awesomerwb1 Jun 2021 #18
Bitcoin works by proving a... reACTIONary Jun 2021 #23
Wait a second. Wasn't the payment to prevent the release of private data? mathematic Jun 2021 #4
They weren't "stealing data", they locked up the business and account records of the company. marble falls Jun 2021 #12
good . AllaN01Bear Jun 2021 #7
Another reality check for those that think most crypto is anonymous. n/t PoliticAverse Jun 2021 #9
Yup - pokes a big hole in the crypto scam. lagomorph777 Jun 2021 #25
Big win! Bristlecone Jun 2021 #11
We dont need details. Dont let them know more oldsoftie Jun 2021 #13
Did Trump get a cut, and if so, was that clawed back? NCjack Jun 2021 #14
What if Trump was still president?.... DippyDem Jun 2021 #15
That was my thought, if he was still around he'd want a cut as a "finders fee"!!!! George II Jun 2021 #17
If trump was still president he'd probably skim 10% off the top for "finders fee"! George II Jun 2021 #16
Good!!! Beacool Jun 2021 #19
US recovers millions in cryptocurrency paid to Colonial Pipeline ransomware hackers FelineOverlord Jun 2021 #20
Kick and recommend. Great job FBI bronxiteforever Jun 2021 #21
Well, duh dot com (if you'll pardon the expression) -- they paid it out once they KNEW Rocknation Jun 2021 #22
Three letters. roamer65 Jun 2021 #27
I wonder if they would risk exposing their access just to recover some money, though. Sapient Donkey Jun 2021 #33
My gut tells me they helped as a "fuck you" to Putin. roamer65 Jun 2021 #38
And then there's times when I think that NY/NJ criminal organizations did it and made it look ... marble falls Jun 2021 #28
Or it was done by Colonial Pipeline, to provide an excuse to raise prices. JustABozoOnThisBus Jun 2021 #31
If only they could make it so they lose more than just what they stole. Sapient Donkey Jun 2021 #32
Pooty's going to lodge a protest when he meets with Biden Yo_Mama_Been_Loggin Jun 2021 #34
Trump would have said where's my cut? Lonestarblue Jun 2021 #35
Donald would have gotten his cut during his job performance review from Putin. keithbvadu2 Jun 2021 #40
Wouldn't the best response have been to say nothing? No press conference; just silence. mahatmakanejeeves Jun 2021 #36
Stealing back from the criminals.... Historic NY Jun 2021 #39
Does the U.S. government get to keep the money? CCExile Jun 2021 #41

catrose

(5,074 posts)
1. Wow! The police financial fraud division once said to me that it's impossible to recover money
Mon Jun 7, 2021, 02:53 PM
Jun 2021

if you paid it to a country who haven't agreed to cooperate with the US in financial matters, like Nigeria or Ghana. I somehow imagine that we don't have such agreements with Russia. Either way, bravo, FBI!

lagomorph777

(30,613 posts)
24. Ironic that cryptocurrency may make perps MORE vulnerable to law enforcement.
Mon Jun 7, 2021, 04:54 PM
Jun 2021


Wouldn't that be delicious?

I hope they reveal which brand of filthy digital lucre fucked them over.

mitch96

(13,926 posts)
29. So did "they" figure out how to crack cryptocurrency or find out where it goes after it's
Mon Jun 7, 2021, 05:45 PM
Jun 2021

removed from the cryptocurrency bitcoin security... Either way this is great... The ransom plan only works if the money goes into a blind no traceable hole...
m

COL Mustard

(5,933 posts)
37. Well Done!
Mon Jun 7, 2021, 08:28 PM
Jun 2021

Had this happened a few short months ago, TFG would have demanded a cut in his own account!

Sanity Claws

(21,857 posts)
2. Nice news to break before the meeting with Putin
Mon Jun 7, 2021, 02:53 PM
Jun 2021

Putin and the rest of the Russian mob were probably counting on their share of that money. That is now gone and future thefts are at risk.

How is Putin to pay for his dachas and private security?

reACTIONary

(5,788 posts)
23. Bitcoin works by proving a...
Mon Jun 7, 2021, 04:46 PM
Jun 2021

... publicly accessible write-only ledger of transactions. All transactions between accounts are fully documented and completely transparent for everyone, anywhere, to scrutinize. The only anonymity provided is that the account numbers don't have to be registered to a specific name. But if you want to use the bit coins for anything substantial, you have to tell someone who you are so they can deliver the goods.

And, if the government knows more than we do about the cryptography involved, they may know how to fake an account, and then make the transfer disappear after the payoff. Who knows?

mathematic

(1,440 posts)
4. Wait a second. Wasn't the payment to prevent the release of private data?
Mon Jun 7, 2021, 03:01 PM
Jun 2021

They had the data and said "we're going to release this unless you pay us". Surely they still have the data? Why wouldn't they just ask for the ransom again?

marble falls

(57,333 posts)
12. They weren't "stealing data", they locked up the business and account records of the company.
Mon Jun 7, 2021, 03:07 PM
Jun 2021

The hackers weren't returning anything but access to the computers.

DippyDem

(659 posts)
15. What if Trump was still president?....
Mon Jun 7, 2021, 03:56 PM
Jun 2021

He would not allow the FBI to interfere! So typical of Trump. I heard a blurb on Bloomberg just a hour ago after the press briefing today by the Justice dept or was it the FBI??? Anyways it was about the fact that 90 companies were victimized by the same Russian hackers from Darkside. I wonder if some of those were from the Trump years??

FelineOverlord

(3,600 posts)
20. US recovers millions in cryptocurrency paid to Colonial Pipeline ransomware hackers
Mon Jun 7, 2021, 04:17 PM
Jun 2021

I love that the FBI had the password to the hackers’ Bitcoin account. 😂😂😂


Rocknation

(44,580 posts)
22. Well, duh dot com (if you'll pardon the expression) -- they paid it out once they KNEW
Mon Jun 7, 2021, 04:31 PM
Jun 2021

Last edited Tue Jun 22, 2021, 02:54 PM - Edit history (1)

that they would be getting it right back.

Ransomware is less of a threat these days if you've taken the precaution of being able to re-encrypt your databases and files and upload them to another sever. I've have do that myself when my seven-year-old daily health news blog got too big for my Web hosts to handle!


Rocknation

Sapient Donkey

(1,568 posts)
33. I wonder if they would risk exposing their access just to recover some money, though.
Mon Jun 7, 2021, 06:28 PM
Jun 2021

Isn't that the whole NSA thing? They prefer to sit back and collect information rather than take actions that would expose their positions and likely end with them losing access once the systems are fixed/patched. At least that is what I gathered from reading books and listening to various people directly involved in that. Apparently this brings about conflict with the more aggressive offensive cyber teams from the military. Although, I suppose there is nothing preventing them from sharing their less secretive and high value access/methods/tools, aye?

marble falls

(57,333 posts)
28. And then there's times when I think that NY/NJ criminal organizations did it and made it look ...
Mon Jun 7, 2021, 05:35 PM
Jun 2021

... like Russia did it.

JustABozoOnThisBus

(23,371 posts)
31. Or it was done by Colonial Pipeline, to provide an excuse to raise prices.
Mon Jun 7, 2021, 06:15 PM
Jun 2021

We need this extra money to study whether we should improve security.

Or, we need this extra money for the chairman's yacht.

Sapient Donkey

(1,568 posts)
32. If only they could make it so they lose more than just what they stole.
Mon Jun 7, 2021, 06:23 PM
Jun 2021

Make it even more risky to attempt such schemes.

"Do we really want to go after a US company? That might get their cyber people after all of our money"

Lonestarblue

(10,095 posts)
35. Trump would have said where's my cut?
Mon Jun 7, 2021, 07:01 PM
Jun 2021

Either that or he would have refused the attempt to protect his buddy Putin.

keithbvadu2

(36,949 posts)
40. Donald would have gotten his cut during his job performance review from Putin.
Mon Jun 7, 2021, 10:27 PM
Jun 2021

Donald would have gotten his cut during his job performance review from Putin.

mahatmakanejeeves

(57,647 posts)
36. Wouldn't the best response have been to say nothing? No press conference; just silence.
Mon Jun 7, 2021, 07:07 PM
Jun 2021

Let the hackers figure it out.

Latest Discussions»Latest Breaking News»US recovers millions in c...