DoJ Arrests Hacker Involved With REvil Group That Stole Apple's MacBook Pro Schematics

The United States Justice Department today announced that it has arrested Ukrainian Yaroslav Vasinskyi for his involvement with REvil, a group that executed ransomware attacks against businesses and government entities in the United States.

macbook pro sizes space gray
REvil in April targeted Apple supplier Quanta Computer and stole schematics of the design of the 14 and 16-inch MacBook Pro models that were later released in October. The schematics unveiled ‌MacBook Pro‌ features like additional ports and the design of the notch, and REvil extorted Apple by threatening to release additional documents if the Cupertino company didn't pay a $50 million fee.

The ransom situation fizzled out just days after REvil made its demand, and the group mysteriously removed all documents and extortion threats related to Apple from its website.

REvil continued on with its illicit activities and in May, was responsible for a cyberattack on the Colonial Pipeline that caused gas shortages on the East Coast of the United States. In July, REvil took advantage of a vulnerability in management software designed for Kaseya, targeting between 800 and 1,500 businesses worldwide.

The DoJ says that Vasinskyi was involved in the Kaseya attack, and it's not clear if he was also part of the attack on Apple supplier Quanta Computer. He was arrested in Poland and is awaiting extradition to the United States.

Along with Vasinskyi's arrest, the Department of Justice has seized $6.1 million received by Yevgeniy Polyanin, who was also involved with REvil and was responsible for attacks against multiple victims. Two other arrests have been made in Romania, but details have not been shared.

"The arrest of Yaroslav Vasinskyi, the charges against Yevgeniy Polyanin and seizure of $6.1 million of his assets, and the arrests of two other Sodinokibi/REvil actors in Romania are the culmination of close collaboration with our international, U.S. government and especially our private sector partners," said FBI Director Christopher Wray. "The FBI has worked creatively and relentlessly to counter the criminal hackers behind Sodinokibi/REvil. Ransomware groups like them pose a serious, unacceptable threat to our safety and our economic well-being. We will continue to broadly target their actors and facilitators, their infrastructure, and their money, wherever in the world those might be."

Both Vasinskyi and Polyanin have been charged with conspiracy to commit fraud and related activity in connection with computers, substantive counts of damage to protected computers, and conspiracy to commit money laundering. Vasinskyi is facing a maximum of 115 years in prison if convicted, while Polyanin could be facing up to 145 years. Though Vasinskyi is in custody, Polyanin has not been arrested and is believed to be abroad.

The U.S. government has been working with allies in other countries to put a stop to REvil. In October, Reuters reported that multiple government agencies teamed up to hack REvil and take its "Happy Blog" website used to leak stolen documents offline.

Popular Stories

iPhone 17 Pro Dark Blue and Orange

iPhone 17 Release Date, Pre-Orders, and What to Expect

Thursday August 28, 2025 4:08 am PDT by
An iPhone 17 announcement is a dead cert for September 2025 – Apple has already sent out invites for an "Awe dropping" event on Tuesday, September 9 at the Apple Park campus in Cupertino, California. The timing follows Apple's trend of introducing new iPhone models annually in the fall. At the event, Apple is expected to unveil its new-generation iPhone 17, an all-new ultra-thin iPhone 17...
xiaomi apple ad india

Apple and Samsung Push Back Against Xiaomi's Bold India Ads

Friday August 29, 2025 4:54 am PDT by
Apple and Samsung have reportedly issued cease-and-desist notices to Xiaomi in India for an ad campaign that directly compares the rivals' devices to Xiaomi's products. The two companies have threatened the Chinese vendor with legal action, calling the ads "disparaging." Ads have appeared in local print media and on social media that take pot shots at the competitors' premium offerings. One...
iPhone 17 Pro Iridescent Feature 2

iPhone 17 Pro Clear Case Leak Reveals Three Key Changes

Sunday August 31, 2025 1:26 pm PDT by
Apple is expected to unveil the iPhone 17 series on Tuesday, September 9, and last-minute rumors about the devices continue to surface. The latest info comes from a leaker known as Majin Bu, who has shared alleged images of Apple's Clear Case for the iPhone 17 Pro and Pro Max, or at least replicas. Image Credit: @MajinBuOfficial The images show three alleged changes compared to Apple's iP...
maxresdefault

The MacRumors Show: iPhone 17's 'Awe Dropping' Accessories

Friday August 29, 2025 8:12 am PDT by
Following the announcement of Apple's upcoming "Awe dropping" event, on this week's episode of The MacRumors Show we talk through all of the new accessories rumored to debut alongside the iPhone 17 lineup. Subscribe to The MacRumors Show YouTube channel for more videos We take a closer look at Apple's invite for "Awe dropping;" the design could hint at the iPhone 17's new thermal system with ...

Top Rated Comments

The Clark Avatar
50 months ago

REvil extorted Apple by threatening to release additional documents if the Cupertino company didn't pay a $50 million fee.
If you had just stolen the schematics and didn't attempt to extort Apple you probably wouldn't be in this mess.
Serves him right.
Score: 12 Votes (Like | Disagree)
DHagan4755 Avatar
50 months ago
Wow! I didn't think they'd ever get caught.
Score: 9 Votes (Like | Disagree)
Killa Aaron Avatar
50 months ago
Hackers are smart and stupid at the same time, its one thing to data mine and find a company's new products before release but to sit there and think any company will kneel to extortion is just ridiculous, it has never happened.
Score: 7 Votes (Like | Disagree)
Shirasaki Avatar
50 months ago

6.1 million in ‘assets’? What exactly at this value is considered assets?
Usually just random valuation and vague claimed damage as long as Apple can get away with it.
Score: 7 Votes (Like | Disagree)
JPack Avatar
50 months ago

Hackers are smart and stupid at the same time, its one thing to data mine and find a company's new products before release but to sit there and think any company will kneel to extortion is just ridiculous, it has never happened.
Apple obviously paid the ransom and the FBI followed the money.

This hacker's real mistake was he was in Poland. If was further east, he would still be on the wanted list.
Score: 7 Votes (Like | Disagree)
JPack Avatar
50 months ago

I figured for every case, the ransom IS PAID, we rarely, if ever, hear about it and the bad guys keep getting away with holding everybody & everything hostage because it pays. Boo!
Because for the vast majority of cases, the ransom is paid. From a business perspective, you go with the option that results in the lowest cost and the least amount of downtime. No business out there has time to make a political statement. Heck, the U.S. government openly negotiates with the Taliban. Everybody knows there's propaganda for the domestic voting audience vs. reality.
Score: 6 Votes (Like | Disagree)