Find notable cyber news and cases, enriched with sources, timelines, and signals.

US-UK-Australia sanctions Media Land bulletproof hosting network

Regulatory/Legal Action
First reported
Last updated
Happening score
H score 26
2 unique sources, 3 articles

Summary

Hide ▲

U.S. federal prosecutors have unsealed charges against three Russian nationals tied to Media Land and ML.Cloud, accused of providing bulletproof hosting used by ransomware gangs for malware delivery, phishing, and command-and-control operations, with over $62 million in damages reported worldwide. The U.S. is also offering up to $10 million through Rewards for Justice for information on the actors and related foreign government-linked activity. This follow-on regulatory/legal action extends pressure on the same hosting network previously sanctioned by the United States, United Kingdom, and Australia in November.

Related Happenings

U.S. Department of State offers RFJ reward for BPH-linked cyber actors

Public Sector Action
H score32 First: 15.07.2026 10:45 Last: 15.07.2026 10:45 Sources 1

How related: The U.S. Department of State is now also offering a reward of up to $10 million through its Rewards for Justice (RFJ) program for any information "on foreign government-linked associates of these actors, their malicious cyber activities, or foreign government-linked use of these companies."

About this happening: The U.S. Department of State is now offering up to $10 million through Rewards for Justice (RFJ) for information tied to the alleged bulletproof hosting operators...

Aleksandr Volosovik unsealed charges in three Russian nationals and Media Land / ML.Cloud

Law Enforcement
H score31 First: 15.07.2026 10:45 Last: 15.07.2026 10:45 Sources 1

How related: U.S. federal prosecutors have unsealed charges against three Russian nationals, accusing them of providing bulletproof hosting (BPH) services to ransomware gangs that caused over $62 million in damages to victims worldwide.

About this happening: U.S. federal prosecutors unsealed charges against three Russian nationals accused of supplying bulletproof hosting to ransomware gangs, escalating a cybercrime cas...

OFAC sanctions First VPN Service and two individuals

Regulatory/Legal Action
H score27 First: 14.07.2026 11:02 Last: 14.07.2026 11:02 Sources 1

About this happening: OFAC sanctioned First VPN Service (1VPNS), Dmytro Rashevskyi, and Yegeniy Vladimirovich Silayev for enabling ransomware attacks and helping malicious software...

Operation Endgame takedown of SocGholish and Evil Corp infrastructure

Law Enforcement
H score58 First: 18.06.2026 16:25 Last: 18.06.2026 16:25 Sources 1

About this happening: International law enforcement disrupted SocGholish/FakeUpdates infrastructure in Operation Endgame on June 18, cleaning 14,971 compromised WordPress websites a...

DOJ seizure of CFAKE.com and SOCFAKE.com deepfake domains

Law Enforcement
H score26 First: 16.06.2026 00:56 Last: 16.06.2026 00:56 Sources 1

About this happening: The U.S. Department of Justice and Homeland Security Investigations seized CFAKE.com and SOCFAKE.com, disrupting a deepfake pornography operation and taking th...

Timeline

  1. 19.11.2025 18:43 3 articles · 7mo ago

    US, UK, and Australia sanction Media Land network

    Legal Policy Action Update

    The United States, the United Kingdom, and Australia imposed sanctions on Media Land, Media Land Technology, Data Center Kirishi, ML Cloud, and three Media Land executives, including Aleksandr Volosovik, Kirill Zatolokin, and Yulia Pankova. The designation froze property and increased secondary-sanctions or enforcement risk for counterparties while citing support for LockBit, BlackSuit, Play, phishing attacks, malware delivery, command and control operations, illicit content hosting, and DDoS attacks.

    Show sources
  2. 19.11.2025 18:43 1 articles · 7mo ago

    Five Eyes issues bulletproof hosting mitigation guidance

    Mitigation Patch Update

    Five Eyes cybersecurity agencies released joint guidance for internet service providers and network defenders to reduce cybercriminal activity using infrastructure provided by bulletproof hosting providers. The guidance recommends building high-confidence malicious resource lists from threat intelligence feeds, conducting regular traffic analysis, applying network-boundary filters, notifying customers about malicious resource lists, and using know-your-customer checks for new clients.

    Show sources