By visiting our site, you agree to our privacy policy regarding cookies, tracking statistics, etc.
Apply to join the new European Cybersecurity PhD Accelerator. Limited places available now!
Apply to join the new European Cybersecurity PhD Accelerator
Read our new Monthly Cyber & Tech Digest in Substack
Monthly Cyber & Tech Digest now in in Substack
Apply now for free support from our Cybersecurity Services Centre
Apply for free cybersecurity support
Tymoshchuk (aka “deadforz/Boba”) allegedly acted as an administrator for the LockerGoga, MegaCortex, and Nefilim ransomware schemes that extorted 250+ U.S. companies and hundreds more worldwide. He and co-conspirators operated from 2018–2021, deploying new ransomware strains when older ones were decrypted. An international investigation (with Europol and authorities in multiple European countries) identified him. Decryption keys for LockerGoga/MegaCortex had been released to victims in 2022. Tymoshchuk is still on the run.