Skip to main content
COSMICBYTEZLABS
NewsSecurityHOWTOsToolsTraining
StudyProjectsNewsletterHire MeAbout
Subscribe

Press Enter to search or Esc to close

News
Security
HOWTOs
Tools
Training
Study
Projects
Newsletter
Hire Me
About
RSS Feed
Reading List
Subscribe

Stay in the Loop

Get the latest security alerts, tutorials, and tech insights delivered to your inbox.

Subscribe NowFree forever. No spam.
COSMICBYTEZLABS

Your trusted source for IT intelligence, cybersecurity insights, and hands-on technical guides.

2761+ Articles
166+ Guides

CONTENT

  • Latest News
  • Security Alerts
  • HOWTOs
  • Checklists
  • Projects
  • Exam Prep

RESOURCES

  • Search
  • Browse Tags
  • Newsletter Archive
  • Reading List
  • RSS Feed

COMPANY

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 CosmicBytez Labs. All rights reserved.

System Status: Operational
  1. Home
  2. News
  3. Ukrainian Hacker Gets Four Years in US Prison Over Conti Ransomware Attacks
Ukrainian Hacker Gets Four Years in US Prison Over Conti Ransomware Attacks
NEWS

Ukrainian Hacker Gets Four Years in US Prison Over Conti Ransomware Attacks

Oleksii Lytvynenko was sentenced to four years for his role as a hacker and developer in the Conti ransomware operation, which extorted over $150 million.

Dylan H.

News Desk

September 11, 2026
3 min read

Conti Ransomware Developer Sentenced

Oleksii Lytvynenko, a 44-year-old Ukrainian national who previously resided in Cork, Ireland, has been sentenced to four years in US prison for his role as a hacker and developer within the Conti ransomware operation, one of the most prolific ransomware groups of the early 2020s.

Lytvynenko pleaded guilty in June 2026 to charges tied to his involvement with Conti. According to prosecutors, his specific conduct included:

  • Personally targeting at least a dozen companies
  • Helping develop malicious tools used by the group, including work on a malware "loader" designed to install malicious programs on compromised systems
  • Storing stolen victim data in online accounts under his control
  • Remaining involved in ransomware-linked activity after Conti's official shutdown in 2022

Forensic investigators recovered stolen data from eight U.S. victims and four international victims inside accounts linked to Lytvynenko, providing much of the evidentiary basis for the case.

Arrest and Extradition

Irish authorities arrested Lytvynenko in Cork in July 2023 at the request of the United States. He subsequently fought extradition through the Irish courts before ultimately being transferred into U.S. custody to face prosecution.

Prosecution's Statement

Assistant Attorney General A. Tysen Duva described Conti's activity as "a sustained and sophisticated campaign that victimized hundreds of organizations," reflecting the scale of harm attributed to the group during its active years.

Background: The Conti Ransomware Operation

Conti was one of the most damaging ransomware-as-a-service operations on record, active primarily between 2020 and 2022. The group:

  • Attacked organizations across 47 U.S. states, 31 countries, Washington D.C., and Puerto Rico
  • Extorted an estimated more than $150 million in ransom payments by January 2022, per FBI figures
  • Operated largely out of Russia and Eastern Europe
  • Dissolved in 2022 following an internal leak of chat logs that exposed its operations and members, with many affiliates believed to have splintered into successor groups

Why This Matters

Lytvynenko's sentencing is part of a continuing pattern of Western law enforcement pursuing individual Conti members years after the group's collapse, using leaked internal communications, financial tracing, and international extradition cooperation to build cases. It underscores that ransomware operators — even those working as developers rather than public-facing negotiators — remain exposed to long-tail prosecution risk long after a group disbands, and that former affiliates who continue related criminal activity after a shutdown compound their own legal exposure.

References

  • The Record — Ukrainian hacker gets four years in US prison over Conti ransomware attacks
#Ransomware#Cybercrime#Conti#Law Enforcement#Extradition

Related Articles

Ukrainian National Pleads Guilty to Role in Conti Ransomware Operation

A Ukrainian national extradited from Ireland to the United States has pleaded guilty to conspiracy charges tied to the Conti ransomware operation, which...

4 min read

Conti Ransomware Member Pleads Guilty, Faces Up to 20 Years in Prison

Oleksii Lytvynenko, a 44-year-old Ukrainian national, has pleaded guilty to participating in the prolific Conti ransomware group after being arrested in...

5 min read

Ransom Cartel Ransomware Creator Sentenced to 16 Years in Prison

Belarusian cybercriminal Maksim Silnikau, the mastermind behind Ransom Cartel ransomware-as-a-service, was sentenced to 16 years in federal prison for orchestrating attacks against 18+ organizations across the US.

3 min read
Back to all News