CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

VPN service favored by ransomware groups is sanctioned by US

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2436

As cited

Copy frozen at (site build).

ransomware

VPN service favored by ransomware groups is sanctioned by US

The U.S. Treasury Department sanctioned First VPN Service (1VPNS) and its Ukrainian administrator for facilitating ransomware operations. In a separate action, a Belarusian individual was also sanctioned for distributing malware encryption tools.

Why it matters: Organizations using 1VPNS or interacting with sanctioned parties face legal and operational risk; practitioners should audit VPN usage and ensure compliance with Treasury sanctions to avoid secondary penalties.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

VPN service favored by ransomware groups is sanctioned by US

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

VPN service favored by ransomware groups is sanctioned by US

The U.S. Treasury Department sanctioned First virtual private network (VPN) Service (1VPNS) and its Ukrainian administrator for facilitating ransomware group activities. In a related action, sanctions were also imposed on a Belarusian man involved in malware cryptor development.

Why it matters: Organizations using 1VPNS face potential compliance issues and connection disruptions, while threat actors lose a key operational infrastructure tool; practitioners should verify whether 1VPNS appears in network logs or endpoint configurations.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary