Threat Intelligence

Ransomware-as-a-Service Kingpin Sentenced to 16 Years in Landmark US Case

The Hacker News · 6 Aug 2026
Key Takeaway Even small businesses can be targeted by large ransomware networks, so maintaining strong backups, patched systems, and staff awareness training remains essential regardless of your company's size.

A federal judge in Alexandria, Virginia has sentenced Maksim Silnikau to 16 years in prison for creating and operating Ransom Cartel, a ransomware-as-a-service (RaaS) platform launched in 2021. RaaS operations allow criminal affiliates to rent ready-made ransomware tools, lowering the technical barrier for launching attacks and making these platforms particularly dangerous.

According to the US Justice Department, Ransom Cartel conspirators targeted at least 18 companies between 2021 and 2023, including businesses in California, New York, and Nebraska, as well as organisations overseas. The case highlights how ransomware operations have become industrialised, with a small number of developers enabling widespread attacks through affiliate networks.

While this case involved larger US-based companies, the RaaS business model means Australian small and medium businesses remain at risk, as affiliates using these tools often target organisations regardless of size or location, looking for weak security controls rather than specific victims.

Summarised by CISO AI from The Hacker News. We link back to every original so you can read it yourself.