"Bulletproof " Lolek hosting site seized as the global fight against ransomware steps up

ransomware
Image credit: Pixabay (Image credit: Pixabay)

Authorities have seized the LolekHosted bulletproof web hosting service and issued five arrests for allegedly facilitating ransomware attacks and other malicious activities.

A bulletproof hosting provider is an online infrastructure used specifically for turning a blind eye on users' activities. LolekHosted promised 100% privacy and a strict no-log policy, allowing clients to host "everything but child porn," US authorities reported

At least 400 networks across the globe are thought to have been compromised by attackers using the provider's domains over a decade of operations.

How LolekHosted alleged help cyber criminals

This joint investigation supported by Europol and the FBI is just the last effort in the global fight to curb malware attacks and cybercrime.

"Being willing to ignore the transgressions of clients does not mean that law enforcement will take the same stance," Europol's official statement stated

"The complex investigation into LolekHosted.net revealed how the service facilitated the distribution of information-stealing malware, and also the launching of DDoS (distributed denial of service) attacks, fictitious online shops, Botnet server management and distribution of spam messages worldwide."

Authorities took down the site on August 8 and, two days later, issued former charges against its founder, 36-year-old Polish national Artur Grabowski, and at least four more key operators. 

Screenshot of LolekHosted site blocked by authorities

(Image credit: Future)

Grabowski has been charged with computer fraud, wire fraud, and conspiracy to commit international money laundering. He allegedly facilitated LolekHosted clients' criminal activities by allowing them to register accounts using false information, while not maintaining IP address logs of their servers, and is also accused of ignoring abuse complaints made by third parties and failing to notify clients of legal inquiries.

Grabowski, who at the time of writing, he is still a fugitive, is subject to a $21.5 million seizure order, too, and risks a minimum of 45 years of jail time.

Among the allegations, LolekHosted is also indicted for its role in supporting criminals with the execution of at least 50 NetWalker ransomware attacks against over 400 networks worldwide. More than 5,000 bitcoin, worth nearly $146 million at today’s prices, was allegedly collected in ransoms from such malicious activities.  

Authorities have been stepping up their grip against cybercrime lately. PowerHost[.]ro was another bulletproof hosting service shut down in June 2023 on similar grounds, whilst MaxiDed experienced the same fate in 2018.

So, while the allegations against LolekHosted need to be proven in court still, we can certainly expect these investigations and charges to become increasingly more frequent. 

TechRadar VPN review disclaimer

Chiara Castro
News Editor (Tech Software)

Chiara is a multimedia journalist committed to covering stories to help promote the rights and denounce the abuses of the digital side of life – wherever cybersecurity, markets, and politics tangle up. She writes news, interviews, and analysis on data privacy, online censorship, digital rights, cybercrime, and security software, with a special focus on VPNs, for TechRadar and TechRadar Pro. Got a story, tip-off, or something tech-interesting to say? Reach out to chiara.castro@futurenet.com

Read more
Representational image of a cybercriminal
US, UK crack down on Russian bulletproof hosting service ZServers for LockBit partnership
Ransomware
8base ransomware site taken down in global police operation
Cyber crime concept with man in handcuffs
Global police operation takes down major cybercrime and hacking forums
Cryptocurrencies
Ransomware’s favorite Russian crypto exchange seized by law enforcement
Ransomware
Fortinet firewall bugs are being targeted by LockBit ransomware hackers
Ransomware
Researchers hijack thousands of backdoors thanks to expired domains
Latest in Pro
Isometric demonstrating multi-factor authentication using a mobile device.
NCSC gets influencers to sing the praises of 2FA
Sam Altman and OpenAI
OpenAI is upping its bug bounty rewards as security worries rise
Context Windows
Why are AI context windows important?
BERT
What is BERT, and why should we care?
A person holding out their hand with a digital AI symbol.
AI is booming — but are businesses seeing real impact?
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Dangerous new CoffeeLoader malware executes on your GPU to get past security tools
Latest in News
Nintendo Switch 2 Joy-Con up-close from app store
Nintendo's new app gave us another look at the Switch 2, and there's something different with the Joy-Con
cheap Nintendo Switch game deals sales
Nintendo didn't anticipate that Mario Kart 8 Deluxe was 'going to be the juggernaut' for the Nintendo Switch when it was ported to the console, according to former employees
Three angles of the Apple MacBook Air 15-inch M4 laptop above a desk
Apple MacBook Air 15-inch (M4) review roundup – should you buy Apple's new lightweight laptop?
Witchbrook
Witchbrook, the life-sim I've been waiting years for, finally has a release window and it's sooner than you think
Amazon Echo Smart Speaker
Amazon is experimenting with renaming Echo speakers to Alexa speakers, and it's about time
Shigeru Miyamoto presents Nintendo Today app
Nintendo Today smartphone app is out now on iOS and Android devices – and here's what it does