Ivan Kondratyev

Threat Actor updated 25 days ago (2024-08-14T09:34:29.442Z)
Download STIX
Preview STIX
Ivan Kondratyev, also known as Bassterlord, is a recognized threat actor associated with the notorious LockBit ransomware group. The Russian national has been linked to malicious cyber activities targeting numerous businesses and industries across the United States and globally. Operating alongside Artur Sungatov, another Russian national, Kondratyev has been implicated in deploying the LockBit ransomware against victims in various sectors including manufacturing, semiconductors, logistics, and insurance. In February 2024, an indictment was unsealed in the District of New Jersey charging Kondratyev and Sungatov with their cybercrimes. This action coincided with a major disruption operation aimed at mitigating the impact of the LockBit ransomware. As part of this operation, the US Justice Department seized LockBit's data leak site and infrastructure, further crippling the group's nefarious activities. The U.S. government has also imposed sanctions on Kondratyev and Sungatov, identifying ten cryptocurrency addresses associated with them. These actions reflect the ongoing efforts by authorities to disrupt the operations of threat actors like Kondratyev and hold them accountable for their crimes. Notably, Kondratyev and Sungatov are not the only members of the LockBit group to face charges; other members have been similarly indicted in the past.
Description last updated: 2024-08-14T09:10:29.827Z
What's your take? (Question 1 of 4)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Possible Aliases / Cluster overlaps
It's hard to track cluster overlaps and naming conventions between vendors, so here are some possible overlapping names / profiles you also may want to look at.
IDVotesProfile Description
Bassterlord
4
Bassterlord, a known threat actor and affiliate of the LockBit group, has been associated with multiple malicious cyber activities since August 2021. Operating under the alias "Bassterlord," Ivan Kondratyev allegedly deployed LockBit ransomware against private and municipal entities in New York, Ore
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Ransomware
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Associated Malware
To see the evidence that has resulted in these malware associations, create a free account
IDTypeVotesProfile Description
Lockbitis related to
4
LockBit is a malicious software, or malware, that has been notably active and damaging in the cyber world. Known for its ability to infiltrate systems often without detection, it can steal personal information, disrupt operations, and even hold data hostage for ransom. In the first half of 2024, Loc
Associated Threat Actors
To see the evidence that has resulted in these threatActor associations, create a free account
IDTypeVotesProfile Description
Artur SungatovUnspecified
4
Artur Sungatov, a Russian national, is recognized as a significant threat actor in the cybersecurity world due to his association with the LockBit ransomware group. He was indicted by the US Justice Department in February 2024, alongside Ivan Kondratyev, also known as Bassterlord. The indictment, un
VasilievUnspecified
2
Mikhail Vasiliev, a dual Russian-Canadian national, was identified as a key player in the global LockBit ransomware conspiracy. Alongside other members including Ruslan Magomedovich Astamirov, Mikhail Pavlovich Matveev, and alleged developers Sungatov and Kondratyev, Vasiliev was involved in the dev
Source Document References
Information about the Ivan Kondratyev Threat Actor was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
7 months ago
US charges two Russian nationals in LockBit ransomware case amid global crackdown
Flashpoint
a month ago
COURT DOC: Two Foreign Nationals Plead Guilty to Participation in LockBit Ransomware Group
DARKReading
2 months ago
Two Foreign Nationals Plead Guilty to Participating in LockBit Ransomware Group
Securityaffairs
2 months ago
Russian nationals plead guilty to participating in the LockBit ransomware group
Securityaffairs
2 months ago
Russian nationals plead guilty to participating in the LockBit ransomware group
Flashpoint
4 months ago
COURT DOC: U.S. Charges Russian National with Developing and Operating LockBit Ransomware
Securityaffairs
4 months ago
Law enforcement agencies identified LockBit ransomware admin and sanctioned him
Securityaffairs
7 months ago
More details about Operation Cronos that disrupted Lockbit operation
CERT-EU
7 months ago
LockBit Ransomware Crackdown: US Sanctions Crypto Wallets | #ransomware | #cybercrime | National Cyber Security Consulting
CERT-EU
7 months ago
Lockbit cybercrime gang disrupted in global takedown | #cybercrime | #infosec | National Cyber Security Consulting
CERT-EU
7 months ago
US, international partners disrupt LockBit ransomware operations | #ransomware | #cybercrime | National Cyber Security Consulting
CERT-EU
7 months ago
Telehealth & Telecare Aware
CERT-EU
6 months ago
Ransomware group LockBit disrupted by global police operation | #ransomware | #cybercrime | National Cyber Security Consulting
CERT-EU
7 months ago
Ransomware group LockBit is disrupted by a global police operation | #ransomware | #cybercrime | National Cyber Security Consulting
Flashpoint
7 months ago
COURT DOC: U.S. and U.K. Disrupt LockBit Ransomware Variant
CERT-EU
7 months ago
Authorities disrupt Lockbit ransomware, indict two RaaS affiliates | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware | National Cyber Security Consulting
CERT-EU
7 months ago
Russians Named as West Smashes Lockbit Ransomware Gang | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware | National Cyber Security Consulting
CERT-EU
6 months ago
United States, U.K. take down international LockBit ransomware group | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware | National Cyber Security Consulting
CERT-EU
7 months ago
Ransomware group LockBit is disrupted by a global police operation that includes 2 arrests | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware | National Cyber Security Consulting
CERT-EU
7 months ago
Ransomware group LockBit is disrupted by a global police operation that includes 2 arrests | World News | #ransomware | #cybercrime | National Cyber Security Consulting