US, UK crack down on Russian bulletproof hosting service ZServers for LockBit partnership
- The US, UK, and Australia, placed sanctions on ZServers and five individuals
- They are all being linked to the infamous LockBit RaaS
- Businesses in these countries are not allowed to transact with ZServers or its employees
Russia-based bulletproof hosting services provider (BPH) ZServers has been sanctioned by the United States, Australia, and the United Kingdom for its alleged involvement with the LockBit ransomware group.
In a press release, the Australian Federal Police (AFP) said ZServers was providing services to threat actors responsible for the Medibank Private breach that happened in October 2022. As a result, millions of Medibank’s customers have had their sensitive data stolen.
Besides putting ZServers on the blacklist, the law enforcement agencies also imposed travel banks and financial sanctions on five Russians – Aleksandr Bolshakov, the alleged owner of ZServers, Aleksandr Mishin and Ilya Sidorov, senior employees, and Dimitriy Bolshakov and Igor Odintsov, regular employees.
Bulletproof hosting
“Bulletproof hosting” is a form of web hosting services highly resistant to takedowns, often catering to clients engaged in questionable or illegal activities. These services ignore law enforcement requests, DMCA notices, and abuse complaints, making them attractive to cybercriminals for hosting malware, phishing sites, botnets, and other malicious operations.
“Calling these hosting providers ‘bulletproof’ is a false marketing gimmick. Cybercriminals think they are safeguarded by these service providers, however, one massive swing from authorities can crack open and disrupt the infrastructure,” said AFP Cyber Command Assistant Commissioner Richard Chin.
They are not immune to sanctions, though, but we’ll have to wait and see how effective they are. In practice, they mean that people and businesses in these three countries are not allowed to transact, or do any business, with the sanctioned entities. Whatever assets ZServers has in these three countries will be frozen, as well.
LockBit is a notorious ransomware-as-a-service (RaaS) operation that has been one of the most active and dangerous cybercrime groups in recent years. It primarily targets businesses, government agencies, and critical infrastructure, encrypting data and demanding ransom payments for decryption keys.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
Among its more notable victims are Boeing, Royal Mail, Industrial and Commercial Bank of China, Accenture, and the Thales Group.
You might also like
The US, UK, and Australia, placed sanctions on ZServers and five individuals They are all being linked to the infamous LockBit RaaS Businesses in these countries are not allowed to transact with ZServers or its employees Russia-based bulletproof hosting services provider (BPH) ZServers has been sanctioned by the United States,…
Recent Posts
- How to watch France vs Ivory Coast: FREE streams, TV channels for World Cup 2026 warm-up
- Belkin’s new Joy-Con grips also boost the Switch 2’s battery life
- How to watch Spain vs Iraq: Free Streams & TV Channels for World Cup 2026 warm-up match
- TSMC struggles to keep up with AI demand: ‘We can only support so much’
- We’re giving away a Prime Day grab bag loaded with over $800 of free tech
Archives
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023