Government release
U.S. Charges Russian National with Developing and Operating LockBit Ransomware
U.S. Department of Justice, Office of Public Affairs, May 7, 2024. The charges against Dimitry Yuryevich Khoroshev (aka LockBitSupp, LockBit, putinkrab), 31, of Voronezh, Russia: a 26-count indictment returned in the District of New Jersey comprising one count of conspiracy to commit fraud, extortion and related activity in connection with computers; one count of conspiracy to commit wire fraud; eight counts of intentional damage to a protected computer; eight counts of extortion in relation to confidential information from a protected computer; and eight counts of extortion in relation to damage to a protected computer — a maximum of 185 years. Same-day OFAC designation and a State Department reward of up to $10 million..
- Source type
- Government release
- Published
- May 7, 2024
- Research grade
- P1
- Used in entries
- 6
Bibliographic record
- Publisher
- U.S. Department of Justice, Office of Public Affairs
- Published
- May 7, 2024
- Source type
- Government release
- Research grade
- Source grade P1
- Language
- English
- Official record
- Official publication
- What it supports
- The charges against Dimitry Yuryevich Khoroshev (aka LockBitSupp, LockBit, putinkrab), 31, of Voronezh, Russia: a 26-count indictment returned in the District of New Jersey comprising one count of conspiracy to commit fraud, extortion and related activity in connection with computers; one count of conspiracy to commit wire fraud; eight counts of intentional damage to a protected computer; eight counts of extortion in relation to confidential information from a protected computer; and eight counts of extortion in relation to damage to a protected computer — a maximum of 185 years. Same-day OFAC designation and a State Department reward of up to $10 million.
- Dataset id
- src_usdoj_khoroshev_charged_2024
Research notes
- The cited /opa/pr/ URL 301-redirects to the /archives/opa/pr/ path recorded here.
- The release also confirms this followed the February 2024 NCA-led LockBit disruption (Operation Cronos).
How this source is used
Cited 6 times across 4 record types.
The role on each citation records what the source was relied on for. A primary source establishes the fact, a supporting source corroborates it, technical evidence describes the infrastructure, and a later outcome records what happened afterwards.
Sources were reviewed to a research cutoff of August 23, 2026. Addresses recorded after that date are not reflected here.
Cited by
Takedown records
1 citation
Cited on the takedown record itself.
-
Operation Cronos wave 1Supporting source
Ransomware, February 2024
Organization roles
1 citation
Cited for an organization's recorded role in a takedown.
-
United States Attorney's Office for the District of New JerseyPrimary source
Charging, Operation Cronos wave 1
Legal actions against people
3 citations
Cited for a recorded legal action against a named person.
-
Dmitry Yuryevich KhoroshevPrimary source
Charged, Operation Cronos wave 1
-
Dmitry Yuryevich KhoroshevPrimary source
Publicly wanted, Operation Cronos wave 1
-
Dmitry Yuryevich KhoroshevPrimary source
Sanctioned, Operation Cronos wave 1
Excluded candidates
1 citation
Cited for a candidate event assessed and left out of the index.
-
OFAC and OFSI designations of Khoroshev, Sungatov, and KondratyevPrimary source
Sanctions-only. Recorded as person_actions of type sanctioned rather than as takedowns.