Mikhail Pavlovich Matveev
Also known as: Wazawaka, m1x, Boriselcin, Uhodiransomwar
Charged
Public record reviewed to August 20, 2026
Index entry last updated August 21, 2026
Alleged ransomware affiliate associated with LockBit, Babuk, and Hive.
Every charge in this entry is an allegation. No conviction is recorded.
- US-indicted ransomware affiliate associated with LockBit, Babuk, and Hive.
- Reportedly charged in Russia in late 2024; that report rests substantially on Russian media and is not independently confirmed.
Everything on this page comes from cited public sources.
This entry records 2 actions across 1 takedown, each traced to a cited source. Every linked takedown sits in the verified core of this index. Where the record is silent, this page says so rather than filling the gap.
Legal summary
- Associated takedowns
- Operation Cronos wave 1
- Recorded role
- Ransomware affiliate associated with LockBit, Babuk, and Hive
- Group segment
- Affiliate
- Charging authority
- United States Department of Justice
- Charging jurisdiction
- United States
- Case number
- Not published
- Latest recorded action
- Charged, May 2023
- Nationality
- Russia
- Country of residence
- Russia
Legal history
Every step recorded in the public legal record for this person, in the order it happened.
These entries describe procedure only. Nothing here establishes guilt, and a charge remains an allegation until a court rules.
-
May 16, 2023
Charged by United States Department of Justice in NJ, United States. Charged in two US districts. US reward of up to 10 million USD.
-
Date not established
Charged in Russia. UNVERIFIED. Reports in late 2024 indicated Russian authorities charged Matveev domestically. This rests substantially on Russian state-linked media and was not confirmed against an official Russian source in this pass.