Skip to content

Secure IT

Stay Secure. Stay Informed.

Primary Menu
  • Home
  • Sources
    • Krebs On Security
    • Security Week
    • The Hacker News
    • Schneier On Security
  • Home
  • Security Week
  • US Seize Garantex in Cryptocurrency Money Laundering Bust
  • Security Week

US Seize Garantex in Cryptocurrency Money Laundering Bust

Ryan Naraine March 7, 2025
0

The US Justice Department on Friday announced the seizure of the online infrastructure used to run Garantex, a major cryptocurrency exchange accused of facilitating multi-billion dollar money laundering and sanctions violations.

The department said it worked with law enforcement partners in Europe to seize three domain names — garantex.org, garantex.io, and garantex.academy — effectively shuttering a cryptocurrency exchange linked to ransomware extortions and services to “transnational criminal organizations, including terrorist groups.”

According to court documents, Garantex processed at least $96 billion in cryptocurrency transactions since April 2019.

In tandem with the shutdown, the DOJ also unsealed an indictment charging Lithuanian Aleksej Besciokov and Russian Aleksandr Mira Serda with money laundering and conspiracy to violate sanctions and operate an unlicensed money transmitting business.

The Department alleges that Besciokov served as Garantex’s primary technical administrator and was responsible for maintaining the exchange’s critical infrastructure and reviewing transactions. 

Mira Serda, identified as the exchange’s co-founder and chief commercial officer, is accused of helping to conceal the illicit activities taking place on the platform. 

The indictment details how both men allegedly knew that criminal proceeds were being laundered through Garantex and took deliberate steps to hide these activities, including providing incomplete account information to law enforcement.

In April 2022, the US government sanctioned Garantex for its role in laundering funds from ransomware attacks and darknet markets. Despite these sanctions, the DOJ now says the admins redesigned Garantex’s operations to evade US rules. One method involved moving operational cryptocurrency wallets to new virtual currency addresses daily to obscure transactions and hinder detection by US exchanges.

Advertisement. Scroll to continue reading.

In the seizure operation, German and Finnish law enforcement agencies also took control of servers hosting Garantex’s operations, while U.S. officials recovered earlier copies of customer and accounting databases. 

More than $26 million in funds linked to the money laundering activities have been frozen, the department said.

Founded in late 2019, Garantex operates out of Moscow and St Petersburg and the US government has linked its transactions with illicit actors and darknet markets, including from Russian ransomware gangs Conti and Hydra.

In February 2022, Garantex lost its license to provide virtual currency services after supervision by Estonia’s Financial Intelligence Unit revealed critical AML/CFT deficiencies and found connections between Garantex and wallets used for criminal activity.  

“Garantex received hundreds of millions in criminal proceeds and was used to facilitate various crimes, including hacking, ransomware, terrorism, and drug trafficking, often with substantial impact to US victims,” the department added.

Related: US Treasury Sanctions Crypto Exchange in Anti-Ransomware Crackdown

Related: Germany Shuts Down Darknet Platform Specializing in Drugs

Related: FBI Says North Korea Hacked Bybit as Details of $1.5B Heist Emerge

Related: Social Engineering Sparked $1.4 Billion Supply Chain Cryptocurrency Heist

About The Author

Ryan Naraine

See author's posts

Original post here

Continue Reading

Previous: In Other News: EntrySign AMD Flaw, Massive Attack Targets ISPs, ENISA Report
Next: Feds Link $150M Cyberheist to 2022 LastPass Hacks

Trending Now

Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks chinese-hackers-attacking.jpg 1

Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks

May 22, 2025
Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise exploitss.jpg 2

Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise

May 22, 2025
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks chinese.jpg 3

Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks

May 22, 2025
Webinar: Learn How to Build a Reasonable and Legally Defensible Cybersecurity Program cyber-program.jpg 4

Webinar: Learn How to Build a Reasonable and Legally Defensible Cybersecurity Program

May 22, 2025
Unpatched Versa Concerto Flaws Let Attackers Escape Docker and Compromise Host exploit.jpg 5

Unpatched Versa Concerto Flaws Let Attackers Escape Docker and Compromise Host

May 22, 2025
Identity Security Has an Automation Problem—And It’s Bigger Than You Think main.jpg 6

Identity Security Has an Automation Problem—And It’s Bigger Than You Think

May 22, 2025

Related Stories

Cybersecurity_News-SecurityWeek.jpg
  • Security Week

Insurance Firm Lemonade Says API Glitch Exposed Some Driver’s License Numbers

Ionut Arghire April 15, 2025 0
ransomware.jpeg
  • Security Week

Kidney Dialysis Services Provider DaVita Hit by Ransomware

Ionut Arghire April 15, 2025 0
Cybersecurity_News-SecurityWeek.jpg
  • Security Week

Conduent Says Names, Social Security Numbers Stolen in Cyberattack

Ionut Arghire April 15, 2025 0
Cybersecurity_News-SecurityWeek.jpg
  • Security Week

2.6 Million Impacted by Landmark Admin, Young Consulting Data Breaches

Ionut Arghire April 15, 2025 0
VC-Funding_China-tech.jpg
  • Security Week

China Pursuing 3 Alleged US Operatives Over Cyberattacks During Asian Games

Associated Press April 15, 2025 0
Satellite-Link-Cybersecurity.jpg
  • Security Week

Blockchain, Quantum, and IoT Firms Unite to Secure Satellite Communications Against Quantum Threats

Kevin Townsend April 15, 2025 0

Connect with Us

Social menu is not set. You need to create menu and assign it to Social Menu on Menu Settings.

Trending News

Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks chinese-hackers-attacking.jpg 1
  • The Hacker News

Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks

May 22, 2025
Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise exploitss.jpg 2
  • The Hacker News

Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise

May 22, 2025
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks chinese.jpg 3
  • The Hacker News

Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks

May 22, 2025
Webinar: Learn How to Build a Reasonable and Legally Defensible Cybersecurity Program cyber-program.jpg 4
  • The Hacker News

Webinar: Learn How to Build a Reasonable and Legally Defensible Cybersecurity Program

May 22, 2025
Unpatched Versa Concerto Flaws Let Attackers Escape Docker and Compromise Host exploit.jpg 5
  • The Hacker News

Unpatched Versa Concerto Flaws Let Attackers Escape Docker and Compromise Host

May 22, 2025
Identity Security Has an Automation Problem—And It’s Bigger Than You Think main.jpg 6
  • The Hacker News

Identity Security Has an Automation Problem—And It’s Bigger Than You Think

May 22, 2025
FBI and Europol Disrupt Lumma Stealer Malware Network Linked to 10 Million Infections lumma-stealer.jpg 7
  • The Hacker News

FBI and Europol Disrupt Lumma Stealer Malware Network Linked to 10 Million Infections

May 22, 2025

You may have missed

chinese-hackers-attacking.jpg
  • The Hacker News

Chinese Hackers Exploit Trimble Cityworks Flaw to Infiltrate U.S. Government Networks

[email protected] The Hacker News May 22, 2025 0
exploitss.jpg
  • The Hacker News

Critical Windows Server 2025 dMSA Vulnerability Enables Active Directory Compromise

[email protected] The Hacker News May 22, 2025 0
chinese.jpg
  • The Hacker News

Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network Attacks

[email protected] The Hacker News May 22, 2025 0
cyber-program.jpg
  • The Hacker News

Webinar: Learn How to Build a Reasonable and Legally Defensible Cybersecurity Program

[email protected] The Hacker News May 22, 2025 0
Copyright © 2025 All rights reserved. | MoreNews by AF themes.