The United States and Britain have sanctioned additional members of a Russian hacking gang known as Trickbot and US officials have indicted nine people with ties to the group’s malicious software and the Conti ransomware schemes, the US Treasury Department and the British Foreign Office said on Thursday.
The two countries previously imposed sanctions against seven leading members of Trickbot in February, noting the group’s role in targeting hospitals during the COVID-19 pandemic as well as the US government and American companies.
Treasury said Thursday’s action targeted “key actors involved in management and procurement for the Trickbot group,” and cited the gang’s ties to Russian intelligence services. British Foreign Secretary James Cleverly said the move was an attempt to disrupt their business model and strip them of their anonymity.
“We know who they are and what they are doing,” he said in a statement.
While such sanctions tend to be largely symbolic given that Russia is already heavily sanctioned and cybercriminals based there tend to steer clear of the United States or Britain, officials have said they can make it harder for hackers to launder money.
The US Justice Department was also unsealing indictments against nine individuals tied to the gang, British and American officials said.
Trickbot draws its name from the eponymous suite of malware tools that the gang members use to hack and extort their victims. The rogue program, whose roots stretch back at least a decade, has been used to infect millions of computers worldwide, Treasury said. British officials said the Trickbot gang had extorted at least $180 million from people across the globe.
The Russian Embassy in Washington did not immediately return an email seeking comment on the announcement. The Department of Justice did not return a message.