Moneycontrol PRO
HomeNewsWorldUS seizes $2.3 million in bitcoin paid to Colonial Pipeline hackers

US seizes $2.3 million in bitcoin paid to Colonial Pipeline hackers

Deputy Attorney General Lisa Monaco said investigators had seized 63.7 bitcoins, now valued at about US$2.3 million, paid by Colonial after last month's hack of its systems that led to massive shortages at US East Coast gas stations.

June 08, 2021 / 10:54 IST
Bitcoin 2021 heralded the receding of the pandemic, with comfortingly familiar and mundane elements of a business conference: the branded plastic sunglasses, brightly colored sponsor booths, lanyards and panels. Some attendees wore business casual. Others looked ready for a music festival. One donned a furry rave bikini.
-
Open Trading A/c
-
0 (0%)
Todays L/H
0
0

The Justice Department on Monday (Jun 7) recovered around US$2.3 million in cryptocurrency ransom paid by Colonial Pipeline Co, cracking down on hackers who launched the most disruptive US cyberattack on record.

Deputy Attorney General Lisa Monaco said investigators had seized 63.7 bitcoins, now valued at about US$2.3 million, paid by Colonial after last month's hack of its systems that led to massive shortages at US East Coast gas stations.

The Justice Department has "found and recaptured the majority" of the ransom paid by Colonial, Monaco said.

An affidavit filed on Monday said the FBI was in possession of a private key to unlock a bitcoin wallet that had received most of the funds. It was unclear how the FBI gained access to the key.

A judge in San Francisco approved the seizure of funds from this "cryptocurrency address", which the filing said was located in the Northern District of California.

Colonial Pipeline had said it paid the hackers nearly US$5 million to regain access.

Bitcoin was trading down nearly 5 per cent around 1800 ET (2200 GMT). The cryptocurrency's value has dropped to around US$34,000 in recent weeks after hitting a high of US$63,000 in April.

Bitcoin seizures are rare, but authorities have stepped up their expertise in tracking the flow of digital money as ransomware has become a growing national security threat and put a further strain on relations between the United States and Russia, where many of the gangs are based.

"Right now, prosecution is a pipedream," Vice President John Hultquist of the Mandiant cybersecurity firm said in praising the move. "Disrupt. Disrupt. Disrupt."

The hack, attributed by the FBI to a gang called DarkSide, caused a days-long shutdown that led to a spike in gas prices, panic buying and localized fuel shortages. It posed a major political headache for President Joe Biden as the US economy was starting to emerge from the COVID-19 pandemic. The White House urged corporate executives and business leaders last week to step up security measures to protect against ransomware attacks after the Colonial hack and later intrusions that disrupted operations at a major meatpacking company. Deputy FBI Director Paul Abbate, who spoke at the same news conference as Monaco on Monday, described DarkSide as a Russia-based cybercrime group. Abbate said the FBI was tracking more than 100 ransomware variants. DarkSide itself victimized at least 90 U.S. companies, including manufacturers and healthcare providers, he said. Colonial Chief Executive Joseph Blount, who will testify before the Senate on Tuesday, said in a statement that the company had worked closely with the FBI from the beginning and was "grateful for their swift work and professionalism." "Holding cyber criminals accountable and disrupting the ecosystem that allows them to operate is the best way to deter and defend against future attacks," Blount said. Commerce Secretary Gina Raimondo said on Sunday the Biden administration was looking at all options to defend against ransomware attacks and that the topic would be on the agenda when Biden meets Russian President Vladimir Putin this month. Tom Robinson, co-founder of crypto tracking firm Elliptic, said that the bitcoin wallet from which the funds were taken had contained 69.6 bitcoins. The seizure announced on Monday was of just 63.7 bitcoins, which Robinson said likely represented the share that had gone to the DarkSide "affiliate" who had initially hacked into Colonial. Investigators say DarkSide often used a partnership model with other hacking groups to compromise numerous victims. DarkSide would normally keep a smaller share for its role in providing the encryption software and negotiating with the victim, Robinson said. On Monday, minutes after the first funds were transferred out, the rest followed. The U.S. government might have seized that second amount as well but not announced it yet, Robinson said. The FBI affidavit filed on Monday said that the bureau had tracked the bitcoin through multiple wallets, using the public blockchain and tools. Small amounts were shaved off the initial 75 bitcoin payment along the way. The remaining amount reached the final wallet on May 27 and stayed there until Monday.
Reuters
first published: Jun 8, 2021 10:54 am

Discover the latest Business News, Sensex, and Nifty updates. Obtain Personal Finance insights, tax queries, and expert opinions on Moneycontrol or download the Moneycontrol App to stay updated!

Advertisement

Crypto Basket
Powered By Mudrex

Bitcoin
Current Price ₹ 8,021,381.07 1D returns -0.93%
Buy Now
Ethereum
Current Price ₹ 270,245.10 1D returns 0.06%
Buy Now
BNB
Current Price ₹ 77,278.24 1D returns -0.08%
Buy Now
Ripple
Current Price ₹ 171.39 1D returns -1.72%
Buy Now
USD Coin
Current Price ₹ 91.17 1D returns 0.02%
Buy Now
Solana
Current Price ₹ 11,524.30 1D returns 0.06%
Buy Now
BTC 50 :: ETH 50
1W returns-3.40%
Invest Now
Crypto Blue Chip - 5
1W returns-3.74%
Invest Now
DeFi Tracker
1W returns-8.96%
Invest Now
Web3 Tracker
1W returns-10.02%
Invest Now
AI Tracker
1W returns-15.54%
Invest Now

Subscribe to Tech Newsletters

  • On Saturdays

    Find the best of Al News in one place, specially curated for you every weekend.

  • Daily-Weekdays

    Stay on top of the latest tech trends and biggest startup news.

Advisory Alert: It has come to our attention that certain individuals are representing themselves as affiliates of Moneycontrol and soliciting funds on the false promise of assured returns on their investments. We wish to reiterate that Moneycontrol does not solicit funds from investors and neither does it promise any assured returns. In case you are approached by anyone making such claims, please write to us at grievanceofficer@nw18.com or call on 02268882347