US Offers $10M Bounty for DarkSide Ransomware Hackers

U.S. State Department Announces $10 Million Bounty for DarkSide Ransomware Leaders
In an escalated effort to combat the increasing threat of ransomware attacks, the U.S. Department of State has announced a reward of up to $10 million. This reward is offered for information leading to the identification or location of the key individuals responsible for leading the DarkSide ransomware group.
Rewards for Information and Arrests
Furthermore, the State Department is offering rewards of up to $5 million for information directly resulting in the arrest or conviction of individuals involved in DarkSide variant ransomware incidents. This initiative acknowledges the group’s affiliate structure, where members utilize customized ransomware versions and share in ransom profits.
The Department stated that this substantial reward demonstrates the United States’ dedication to safeguarding victims worldwide from exploitation by malicious cyber actors.
The U.S. government is also seeking cooperation from nations that provide safe harbor to ransomware criminals, urging them to pursue justice for affected businesses and organizations.
Colonial Pipeline Attack and Subsequent Rebranding
This bounty program was initiated following the DarkSide attack on Colonial Pipeline earlier this year. The attack caused a shutdown of the 5,500-mile pipeline, which supplies 45% of the fuel for the eastern United States.
Shortly after the attack, DarkSide’s servers were compromised, leading the group to cease operations and rebrand itself as BlackMatter. BlackMatter subsequently targeted Olympus, a Japanese technology company, in September, and impacted several organizations considered critical infrastructure, including two U.S. companies within the food and agriculture sectors.
Recently, BlackMatter announced its own cessation of operations, citing pressure from law enforcement agencies.
Transnational Organized Crime Rewards Program
The $10 million reward is being administered through the Department of State’s Transnational Organized Crime Rewards Program (TOCRP). This program, managed in collaboration with federal law enforcement, aims to disrupt and dismantle international criminal organizations.
Since its inception in 1986, the TOCRP has distributed $135 million in rewards.
Industry Expert Commentary
Jake Williams, CTO at BreachQuest, commented to TechCrunch that the significant reward amount will have widespread consequences. He believes it will incentivize individuals within these criminal networks to betray one another.
Williams further stated that this action is particularly impactful as it erodes trust within the ransomware-as-a-service affiliate model, especially following recent law enforcement actions against the REvil group.
Broader Efforts to Combat Ransomware
This announcement represents the latest in a series of initiatives undertaken by the Biden administration to address the escalating ransomware threat. The Treasury Department has recently taken action against virtual currency exchanges, sanctioning Suex for facilitating ransomware payments.
These measures demonstrate a comprehensive approach to countering ransomware attacks and holding perpetrators accountable.
Related Posts

NHS England Data Breach Confirmed by Tech Provider

Cisco Zero-Day Exploit: Chinese Hackers Targeting Customers

Pornhub Hacked: User Data Extorted by Hacking Group

Google and Apple Release Emergency Security Updates

700credit Data Breach: 5.6 Million Affected
