US Deputy Attorney General Rod Rosenstein announces the indictment of two Iranians in the SamSam Ransomware attack. EPA
US Deputy Attorney General Rod Rosenstein announces the indictment of two Iranians in the SamSam Ransomware attack. EPA
US Deputy Attorney General Rod Rosenstein announces the indictment of two Iranians in the SamSam Ransomware attack. EPA
US Deputy Attorney General Rod Rosenstein announces the indictment of two Iranians in the SamSam Ransomware attack. EPA

US indicts Iranians over ransomware attacks worth $6 million


  • English
  • Arabic

The US on Wednesday imposed cyber-related sanctions on two Iranians it said had helped exchange digital Bitcoin currency obtained from ransom payments into Iranian riyal and charged two Iranian hackers involved in a ransomware conspiracy that netted them millions of dollars.

More than 7,000 transactions in Bitcoin had been traced to two digital currency addresses operated by the first two men, according to the Treasury.

Naming them as Ali Khorashadizadeh and Mohammad Ghorbaniyan, the Treasury's Office of Foreign Assets Control (Ofac) said the conspiracy involved the SamSam ransomware scheme where hackers targeted electronic systems at American hospitals, universities and government agencies.

Their digital currency addresses are the first to be publicly attributed to persons placed on a US sanctions blacklist, Ofac said.

“Treasury is targeting digital currency exchangers who have enabled Iranian cyber actors to profit from extorting digital ransom payments from their victims,” said Treasury under secretary for terrorism and financial intelligence Sigal Mandelker.

“As Iran becomes increasingly isolated and desperate for access to US dollars, it is vital that virtual currency exchanges, peer-to-peer exchangers, and other providers of digital currency services harden their networks against these illicit schemes.”

Sigal Mandelker, the undersecretary for terrorism and financial intelligence at the US Treasury. AP Photo
Sigal Mandelker, the undersecretary for terrorism and financial intelligence at the US Treasury. AP Photo

Such exchanges transfer traditional currencies into Bitcoin, or Bitcoin into traditional currencies.

Criminal ransomware activity relies on electronic capability to encrypt data on mainframe style systems. The conspirators then offer to decrypt the data in return for payment.

“Treasury will aggressively pursue Iran and other rogue regimes attempting to exploit digital currencies and weaknesses in cyber to further their nefarious objectives,” Ms Mandelker added.

In a related action the Justice Department indicted two different Iranians for infecting data networks with SamSam ransomware in the US, Britain and Canada since 2015.

According to the indictment, Faramarz Shahi Savandi and Mohammad Mehdi Shah Mansouri, both operating in Iran, authored and deployed SamSam ransomware to hack into networks.

____________

Read more:

US Congress finalises bill on sanctioning Iranian-backed militias in Iraq

Iraq seeks power revamp to head off sanctions and protests

Sadr demands swift government formation, urging fresh nominations for key posts

____________

Their targets included the US cities of Newark and Atlanta, the port of San Diego, Colorado's Transportation Department as well as a hospital and a medical laboratory.

“The defendants' objective allegedly was to prevent these victims from accessing or using data on the compromised computers, forcing them to shut down or dramatically curtail their operations,” the Justice Department said.

“According to the indictment, the defendants then extorted ransom payments from their victims by threatening otherwise to delete the decryption keys needed to unlock the compromised computers,” it added.

In total, the defendants allegedly hacked and extorted more than 200 victims, and collected more than $6 million in criminal proceeds, according to the charges. The victims also incurred additional losses exceeding $30 million because they were unable to access their data.

Ofac named the digital currency addresses are the first to be publicly attributed to persons placed on a US sanctions blacklist. Bloomberg
Ofac named the digital currency addresses are the first to be publicly attributed to persons placed on a US sanctions blacklist. Bloomberg

The 25-page indictment charges that the hackers' scheme was for their own personal profit, and was not government directed.

Both men are believed to be in Iran and are considered fugitives from justice, US officials said.

The Treasury and Justice departments' announcements came shortly before the US Special Representative for Iran Brian Hook said he would on Thursday deliver remarks and showcase evidence about Tehran's transfer of arms to proxy groups and issue an update on the regime's latest ballistic missile work.

“This display contains clear and tangible evidence that the Iranian regime is arming dangerous groups with advanced weapons, and spreading instability and conflict in the region, which poses a threat to international peace and security,” the State Department said in advance of the briefing to take place at a military base in southeast Washington DC.

The three separate announcements are the latest sign of the Trump administration's efforts to sanction individuals or entities in Iran.

Formula Middle East Calendar (Formula Regional and Formula 4)
Round 1: January 17-19, Yas Marina Circuit – Abu Dhabi
 
Round 2: January 22-23, Yas Marina Circuit – Abu Dhabi
 
Round 3: February 7-9, Dubai Autodrome – Dubai
 
Round 4: February 14-16, Yas Marina Circuit – Abu Dhabi
 
Round 5: February 25-27, Jeddah Corniche Circuit – Saudi Arabia
Unresolved crisis

Russia and Ukraine have been locked in a bitter conflict since 2014, when Ukraine’s Kremlin-friendly president was ousted, Moscow annexed Crimea and then backed a separatist insurgency in the east.

Fighting between the Russia-backed rebels and Ukrainian forces has killed more than 14,000 people. In 2015, France and Germany helped broker a peace deal, known as the Minsk agreements, that ended large-scale hostilities but failed to bring a political settlement of the conflict.

The Kremlin has repeatedly accused Kiev of sabotaging the deal, and Ukrainian officials in recent weeks said that implementing it in full would hurt Ukraine.

The more serious side of specialty coffee

While the taste of beans and freshness of roast is paramount to the specialty coffee scene, so is sustainability and workers’ rights.

The bulk of genuine specialty coffee companies aim to improve on these elements in every stage of production via direct relationships with farmers. For instance, Mokha 1450 on Al Wasl Road strives to work predominantly with women-owned and -operated coffee organisations, including female farmers in the Sabree mountains of Yemen.

Because, as the boutique’s owner, Garfield Kerr, points out: “women represent over 90 per cent of the coffee value chain, but are woefully underrepresented in less than 10 per cent of ownership and management throughout the global coffee industry.”

One of the UAE’s largest suppliers of green (meaning not-yet-roasted) beans, Raw Coffee, is a founding member of the Partnership of Gender Equity, which aims to empower female coffee farmers and harvesters.

Also, globally, many companies have found the perfect way to recycle old coffee grounds: they create the perfect fertile soil in which to grow mushrooms. 

COMPANY%20PROFILE%20
%3Cp%3EName%3A%20DarDoc%3Cbr%3EBased%3A%20Abu%20Dhabi%3Cbr%3EFounders%3A%20Samer%20Masri%2C%20Keswin%20Suresh%3Cbr%3ESector%3A%20HealthTech%3Cbr%3ETotal%20funding%3A%20%24800%2C000%3Cbr%3EInvestors%3A%20Flat6Labs%2C%20angel%20investors%20%2B%20Incubated%20by%20Hub71%2C%20Abu%20Dhabi's%20Department%20of%20Health%3Cbr%3ENumber%20of%20employees%3A%2010%3C%2Fp%3E%0A
While you're here ...

Damien McElroy: What happens to Brexit?

Con Coughlin: Could the virus break the EU?

Andrea Matteo Fontana: Europe to emerge stronger

UAE SQUAD

 

Goalkeepers: Ali Khaseif, Fahad Al Dhanhani, Mohammed Al Shamsi, Adel Al Hosani

Defenders: Bandar Al Ahbabi, Shaheen Abdulrahman, Walid Abbas, Mahmoud Khamis, Mohammed Barghash, Khalifa Al Hammadi, Hassan Al Mahrami, Yousef Jaber, Mohammed Al Attas

Midfielders: Ali Salmeen, Abdullah Ramadan, Abdullah Al Naqbi, Majed Hassan, Abdullah Hamad, Khalfan Mubarak, Khalil Al Hammadi, Tahnoun Al Zaabi, Harib Abdallah, Mohammed Jumah

Forwards: Fabio De Lima, Caio Canedo, Ali Saleh, Ali Mabkhout, Sebastian Tagliabue

ROUTE%20TO%20TITLE
%3Cp%3E%3Cstrong%3ERound%201%3A%3C%2Fstrong%3E%20Beat%20Leolia%20Jeanjean%206-1%2C%206-2%3Cbr%3E%3Cstrong%3ERound%202%3A%20%3C%2Fstrong%3EBeat%20Naomi%20Osaka%207-6%2C%201-6%2C%207-5%3Cbr%3E%3Cstrong%3ERound%203%3A%20%3C%2Fstrong%3EBeat%20Marie%20Bouzkova%206-4%2C%206-2%3Cbr%3E%3Cstrong%3ERound%204%3A%3C%2Fstrong%3E%20Beat%20Anastasia%20Potapova%206-0%2C%206-0%3Cbr%3E%3Cstrong%3EQuarter-final%3A%20%3C%2Fstrong%3EBeat%20Marketa%20Vondrousova%206-0%2C%206-2%3Cbr%3E%3Cstrong%3ESemi-final%3A%20%3C%2Fstrong%3EBeat%20Coco%20Gauff%206-2%2C%206-4%3Cbr%3E%3Cstrong%3EFinal%3A%3C%2Fstrong%3E%20Beat%20Jasmine%20Paolini%206-2%2C%206-2%3C%2Fp%3E%0A