Ransomware · 63 days ago
Ransomware liability does not end when the victim restores access. A long-running case can still turn into a guilty plea, restitution, and prison time years later when prosecutors preserve the evidence and keep working across borders.
Karen Serobovich Vardanyan pleaded guilty in Oregon to conspiracy and computer fraud tied to Ryuk attacks in 2019 and 2020, after being extradited from Ukraine. Prosecutors say the campaign hit a Michigan company that paid about 200 bitcoin, a technology company in Oregon, and a Texas school, and Vardanyan agreed to pay more than $1.1 million in restitution. Sentencing is set for September 22.
The practical point for defenders is not a product fix. It is that ransomware investigations can outlast the incident window by years, and the people who handled deployment or payment can still face criminal liability long after the original compromise has faded from view.
4 sources covering this story
Hacker Extradited from Ukraine Pleads Guilty to Ryuk Ransomware Charge
An Armenian man has pleaded guilty to his role in the infamous Ryuk ransomware operation
Armenian national pleads guilty to Ryuk ransomware attacks
Karen Vardanyan faces up to 15 years in federal prison and agreed to pay nearly $1.2 million in restitution.
The Record from Recorded Future
Ryuk operator pleads guilty; Blackcat/AlphV conspirator gets nearly 6-year sentence
One man accused of deploying Ryuk ransomware pleaded guilty Wednesday in an Oregon federal court to conspiracy and computer fraud, while another man received a 70-month federal prison sentence in a Florida court for helping the Blackcat/AlphV gang extort multiple victims.
Ryuk ransomware member pleads guilty in the US, faces 15 years in prison
A 34-year-old Armenian man has pleaded guilty to hacking U.S.
Part of the PlainSec briefing for 2026-07-10