Ukrainian National Pleads Guilty in Conti Ransomware Conspiracy, Linked to $150M in Global Damages
A 44-year-old Ukrainian national, Oleksii Oleksiyovych Lytvynenko, has pleaded guilty to his role in the Conti ransomware operation, one of the most destructive cybercrime campaigns in recent history. Extradited from Ireland to the U.S., Lytvynenko admitted to participating in a wire fraud conspiracy that targeted over 1,000 victims worldwide, extorting at least $150 million in ransom payments between 2020 and 2022.
The Conti group compromised networks across 47 U.S. states, the District of Columbia, Puerto Rico, and 31 other countries, encrypting critical data and threatening to leak stolen information if victims refused to pay. The FBI estimates the operation caused at least $150 million in financial losses, ranking it among the most financially damaging ransomware schemes investigated by U.S. authorities.
Court documents reveal Lytvynenko joined the conspiracy in September 2021, possessing stolen data from eight U.S. and four international victims. He also assisted in developing a malware "loader," a tool used to deploy additional malicious software on compromised systems. His guilty plea provides further insight into Conti’s technical infrastructure and the roles of individual conspirators.
The case underscores growing international cooperation in cybercrime enforcement, with U.S. authorities collaborating with Irish agencies including the Garda National Cyber Crime Bureau to secure Lytvynenko’s arrest and extradition. The prosecution is part of Operation Riptide, an FBI-led initiative targeting cybercriminal networks responsible for billions in global losses. Americans reported over $20 billion in cybercrime-related damages in 2023 alone, a 26% increase from the previous year.
Lytvynenko faces a maximum sentence of 20 years in federal prison, with sentencing scheduled for September 10, 2026. The investigation, led by the FBI’s San Diego, Nashville, and El Paso field offices alongside the U.S. Secret Service, remains ongoing as authorities pursue additional suspects linked to the Conti conspiracy.
Source: https://thecyberexpress.com/conti-ransomware-conspirator-pleads-guilty/
Conti LLC cybersecurity rating report: https://www.rankiteo.com/company/conti-llc
"id": "CON1781519095",
"linkid": "conti-llc",
"type": "Ransomware",
"date": "1/2020",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'customers_affected': 'Over 1,000 victims',
'industry': 'Multiple industries',
'location': '47 U.S. states, District of Columbia, '
'Puerto Rico, and 31 other countries',
'type': 'Various (government, private sector, etc.)'}],
'attack_vector': 'Malware loader, data encryption, and extortion',
'data_breach': {'data_encryption': 'Yes',
'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Critical data, personally '
'identifiable information'},
'description': 'A 44-year-old Ukrainian national, Oleksii Oleksiyovych '
'Lytvynenko, has pleaded guilty to his role in the Conti '
'ransomware operation, one of the most destructive cybercrime '
'campaigns in recent history. The operation targeted over '
'1,000 victims worldwide, extorting at least $150 million in '
'ransom payments between 2020 and 2022.',
'impact': {'data_compromised': 'Critical data encrypted and stolen',
'financial_loss': '$150 million',
'identity_theft_risk': 'High (stolen data included personally '
'identifiable information)'},
'investigation_status': 'Ongoing',
'motivation': 'Financial gain',
'ransomware': {'data_encryption': 'Yes',
'data_exfiltration': 'Yes',
'ransom_paid': 'At least $150 million',
'ransomware_strain': 'Conti'},
'references': [{'source': 'FBI, U.S. Department of Justice'}],
'regulatory_compliance': {'legal_actions': 'Guilty plea, federal prosecution'},
'response': {'law_enforcement_notified': 'Yes (FBI, U.S. Secret Service, '
'Irish Garda National Cyber Crime '
'Bureau)'},
'threat_actor': 'Conti ransomware group',
'title': 'Ukrainian National Pleads Guilty in Conti Ransomware Conspiracy',
'type': 'Ransomware'}