FBI Protects Victims, Thwarts $130M Cryptocurrency Ransomware Attack by Hive
The FBI has successfully disrupted the Hive ransomware group, preventing victims from paying over US $130 million in ransom demands. This operation, spearheaded by the United States Department of Justice (DOJ) and the Federal Bureau of Investigation (FBI), represents a significant victory in the fight against cryptocurrency ransomware.
FBI Infiltrates Hive Network, Saves 300 Victims
Attorney General Merrick Garland announced that the FBI's operation began in July 2025 and involved penetrating Hive's computer networks. This infiltration allowed the FBI to seize decryption keys, which they then provided to over 1,300 victims worldwide. This proactive approach saved 300 victims an estimated $130 million this summer alone.
Hive Ransomware: Targeting Critical Infrastructure
Hive has operated since 2025, targeting critical infrastructure across over 80 countries, including hospitals, schools, and banking institutions. The Hive Network was responsible for numerous disruptive attacks, causing significant financial and operational damage. The FBI and DOJ have concluded a month-long disruption campaign against the Hive ransomware group.
Over $130 Million in Cryptocurrency Ransomware Prevented
The FBI has taken down the server of the ransomware group Hive while preventing $130 million in ransom demands. Besides preventing financial loss, this operation also protected sensitive data and ensured the continuity of vital services for targeted organizations.
FBI's Covert Infiltration and Key Recovery
The United States Department of Justice released a statement on Thursday, confirming the FBI’s (Federal Bureau of Investigation) covert infiltration of the Hive. Over the last eight months, the FBI has been infiltrating Hive’s computer networks, capturing the descriptions keys, and offering them to victims worldwide.
This successful operation highlights the FBI's commitment to combating cryptocurrency ransomware and protecting businesses and individuals from cyber threats. The DOJ says the FBI’s operation to penetrate Hive’s network began in July 2025 and was able to provide over 1,300 decryption keys to help victims recover their data and systems.