Ransomware gang apologizes after affiliate infects CIS target

TL;DR. The RAlord ransomware group issued an apology and banned an affiliate for infecting Eriell Group, an oilfield services company in Uzbekistan and Moscow. - The affiliate violated a standing rule in the ransomware community against attacking targets within CIS countries. - RAlord promised to help Eriell with recovery free of charge and not to leak stolen data. - This incident highlights unofficial geopolitical rules governing some cybercriminal operations.

Sources

Back to QLANKR News