Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

Swiss Court Sentences Ukrainian Ransomware Developer to Nearly 13 Years in Prison


Swiss court sentences a 52-year-old Ukrainian ransomware developer to nearly 13 years in prison for his role in developing and distributing three notorious ransomware operations. The individual, who remains unnamed, was found guilty of playing a key role in Lockergoga, MegaCortex, and Nefilim attacks that caused an estimated several hundred million Swiss francs in losses across 71 countries.

  • A Swiss court has sentenced a 52-year-old Ukrainian ransomware developer to nearly 13 years in prison for their role in developing and distributing three notorious ransomware operations: Lockergoga, MegaCortex, and Nefilim.
  • The operations caused an estimated several hundred million Swiss francs in losses across 71 countries and targeted companies and organizations in various industries.
  • The individual's conviction highlights the ongoing threat posed by sophisticated cyberattacks and the importance of international cooperation in combating cybercrime.
  • The case demonstrates the growing importance of data preservation and analysis in the investigation and prosecution of cybercrimes.
  • The conviction underscores the need for greater cooperation and coordination between law enforcement agencies and cybersecurity experts in investigating and prosecuting cybercrimes.



  • A Swiss court has delivered a verdict that will have far-reaching implications for the global cybersecurity community, sentencing a 52-year-old Ukrainian ransomware developer to a staggering nearly 13 years in prison. The individual, who remains unnamed in the public record, was found guilty of playing a key role in the development and distribution of three notorious ransomware operations: Lockergoga, MegaCortex, and Nefilim.

    The court's decision, which was made in Zurich District Court, took into account the devastating impact of the individual's actions on the victims of the attacks. The operations, which were allegedly carried out by the individual and other unknown accomplices, caused an estimated several hundred million Swiss francs in losses across 71 countries. The attacks, which were designed to extort large sums of money from the victims, targeted companies and organizations in a variety of industries, including HVAC, software development, and rolling stock manufacturing.

    The individual, who had been held in pretrial detention since October 2021, consistently denied knowledge of the malicious use of his software. However, investigators found evidence of extortion messages and other incriminating materials at his home in Basel-Landschaft, which they used to build their case against him. The court ultimately rejected the individual's claims of innocence, finding that he had indeed played a significant role in the development and distribution of the ransomware operations.

    The individual's conviction is significant not only because of the severity of his sentence, but also because it highlights the ongoing threat posed by sophisticated cyberattacks. The Lockergoga, MegaCortex, and Nefilim operations, which were allegedly carried out by the individual and other accomplices, are among the most notorious examples of ransomware attacks in recent history. The attacks, which were designed to extort large sums of money from the victims, targeted companies and organizations in a variety of industries, including HVAC, software development, and rolling stock manufacturing.

    The individual's conviction also underscores the importance of international cooperation in combating cybercrime. The case against the individual was built in part through the cooperation of law enforcement agencies in multiple countries, including the United States, where the individual had been formally indicted on charges related to the ransomware attacks. The indictment, which was made public in 2022, accused the individual of being the mastermind behind the Lockergoga, MegaCortex, and Nefilim operations, and provided further evidence of the devastating impact of the attacks on the victims.

    In addition to the individual's conviction, the case also highlights the growing importance of data preservation and analysis in the investigation and prosecution of cybercrimes. The investigators who built the case against the individual used a range of techniques, including the analysis of source code and digital forensics, to gather evidence and build their case. The analysis of source code, in particular, played a critical role in the investigation, allowing investigators to identify the individual as the likely developer of the Lockergoga, MegaCortex, and Nefilim operations.

    The case against the individual is also significant because it underscores the ongoing threat posed by the use of ransomware attacks to extort money from victims. The Lockergoga, MegaCortex, and Nefilim operations, which were allegedly carried out by the individual and other accomplices, are among the most notorious examples of ransomware attacks in recent history. The attacks, which were designed to extort large sums of money from the victims, targeted companies and organizations in a variety of industries, including HVAC, software development, and rolling stock manufacturing.

    The impact of the Lockergoga, MegaCortex, and Nefilim operations was felt far beyond the individual's conviction, however. The attacks, which were carried out by the individual and other accomplices, caused an estimated several hundred million Swiss francs in losses across 71 countries. The attacks, which were designed to extort large sums of money from the victims, targeted companies and organizations in a variety of industries, including HVAC, software development, and rolling stock manufacturing.

    The impact of the Lockergoga, MegaCortex, and Nefilim operations also highlights the need for greater cooperation and coordination between law enforcement agencies and cybersecurity experts in the investigation and prosecution of cybercrimes. The case against the individual, which was built in part through the cooperation of law enforcement agencies in multiple countries, underscores the importance of international cooperation in combating cybercrime. The indictment, which was made public in 2022, accused the individual of being the mastermind behind the Lockergoga, MegaCortex, and Nefilim operations, and provided further evidence of the devastating impact of the attacks on the victims.

    In conclusion, the conviction of the 52-year-old Ukrainian ransomware developer is a significant milestone in the ongoing effort to combat cybercrime and protect the global community from the devastating impact of ransomware attacks. The individual's conviction, which was made public in a Swiss court, underscores the importance of international cooperation in combating cybercrime and highlights the ongoing threat posed by sophisticated cyberattacks. The case also underscores the importance of data preservation and analysis in the investigation and prosecution of cybercrimes, and highlights the need for greater cooperation and coordination between law enforcement agencies and cybersecurity experts.



    Related Information:
  • https://www.ethicalhackingnews.com/articles/Swiss-Court-Sentences-Ukrainian-Ransomware-Developer-to-Nearly-13-Years-in-Prison-ehn.shtml

  • https://www.theregister.com/security/2026/09/15/swiss-court-sentences-52-year-old-ukrainian-ransomware-dev-to-nearly-13-years-in-the-cooler/5296482


  • Published: Tue Sep 15 09:13:16 2026 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us