The Lawfare Podcast


Alex Iftimie on the DOJ Disruption of the Hive Ransomware Group

On January 26, the Department of Justice held a press conference to announce its months-long disruption campaign against the Hive ransomware group that has targeted more than 1,500 victims in over 80 countries around the world, including hospitals, school districts, financial firms, and critical infrastructure. In July 2022, the FBI penetrated Hive’s computer networks, captured its decryption keys, and, over the course of the ensuing months, offered the decryption keys to victims worldwide, preventing these victims from having to pay $130 million in ransom that Hive demanded. 

To talk about this disruption operation, Lawfare senior editor Stephanie Pell sat down with Alex Iftimie, partner at the law firm Morrison Foerster and a former federal prosecutor in the National Security and Cyber Crimes Units in the U.S. Attorney’s Office for the Eastern District of Virginia. They talked about how the Hive ransomware group operated, the significant aspects of this disruption operation, and how this disruption operation fits into the broader picture of U.S. government efforts to disrupt ransomware groups and actors.

