Skip to Content

DoJ Arrests Hacker Involved With REvil Group That Stole Apple's MacBook Pro Schematics

The United States Justice Department today announced that it has arrested Ukrainian Yaroslav Vasinskyi for his involvement with REvil, a group that executed ransomware attacks against businesses and government entities in the United States.

macbook pro sizes space gray
REvil in April targeted Apple supplier Quanta Computer and stole schematics of the design of the 14 and 16-inch MacBook Pro models that were later released in October. The schematics unveiled ‌MacBook Pro‌ features like additional ports and the design of the notch, and REvil extorted Apple by threatening to release additional documents if the Cupertino company didn't pay a $50 million fee.

The ransom situation fizzled out just days after REvil made its demand, and the group mysteriously removed all documents and extortion threats related to Apple from its website.

REvil continued on with its illicit activities and in May, was responsible for a cyberattack on the Colonial Pipeline that caused gas shortages on the East Coast of the United States. In July, REvil took advantage of a vulnerability in management software designed for Kaseya, targeting between 800 and 1,500 businesses worldwide.

The DoJ says that Vasinskyi was involved in the Kaseya attack, and it's not clear if he was also part of the attack on Apple supplier Quanta Computer. He was arrested in Poland and is awaiting extradition to the United States.

Along with Vasinskyi's arrest, the Department of Justice has seized $6.1 million received by Yevgeniy Polyanin, who was also involved with REvil and was responsible for attacks against multiple victims. Two other arrests have been made in Romania, but details have not been shared.

"The arrest of Yaroslav Vasinskyi, the charges against Yevgeniy Polyanin and seizure of $6.1 million of his assets, and the arrests of two other Sodinokibi/REvil actors in Romania are the culmination of close collaboration with our international, U.S. government and especially our private sector partners," said FBI Director Christopher Wray. "The FBI has worked creatively and relentlessly to counter the criminal hackers behind Sodinokibi/REvil. Ransomware groups like them pose a serious, unacceptable threat to our safety and our economic well-being. We will continue to broadly target their actors and facilitators, their infrastructure, and their money, wherever in the world those might be."

Both Vasinskyi and Polyanin have been charged with conspiracy to commit fraud and related activity in connection with computers, substantive counts of damage to protected computers, and conspiracy to commit money laundering. Vasinskyi is facing a maximum of 115 years in prison if convicted, while Polyanin could be facing up to 145 years. Though Vasinskyi is in custody, Polyanin has not been arrested and is believed to be abroad.

The U.S. government has been working with allies in other countries to put a stop to REvil. In October, Reuters reported that multiple government agencies teamed up to hack REvil and take its "Happy Blog" website used to leak stolen documents offline.

Popular Stories

Apple Event Logo

Apple Released Seven New Products Today

Wednesday March 11, 2026 7:05 am PDT by
Starting today, the seven new Apple products that were announced last week are available at Apple Stores and beginning to arrive to customers. The colorful MacBook Neo and all of the other new products are on display at most Apple Store locations around the world starting today. Apple Stores have inventory of the new products for both walk-in customers and Apple Store pickup, but...
ios 26 4 yellow

Everything New in iOS 26.4 Beta 4

Monday March 9, 2026 3:50 pm PDT by
Apple is continuing to test the iOS 26.4 beta, and the latest update is now available for developers and public beta testers. As testing goes on, there are fewer new features in each beta, but today’s release adds new emoji characters and a few other changes. New Emoji Apple added new emoji characters, including trombone, treasure chest, distorted face, hairy creature, fight cloud, orca,...
Apple MacBook Pro M4 hero

Apple Planning 'MacBook Ultra' With Touchscreen and Higher Price

Sunday March 8, 2026 8:05 am PDT by
Apple is planning to launch an all-new "MacBook Ultra" model this year, featuring an OLED display, touchscreen, and a higher price point, Bloomberg's Mark Gurman reports. Gurman revealed the information in his latest "Power On" newsletter. While Apple has been widely expected to launch new M6-series MacBook Pro models with OLED displays, touchscreen functionality, and a new, thinner design...

Top Rated Comments

The Clark Avatar
57 months ago

REvil extorted Apple by threatening to release additional documents if the Cupertino company didn't pay a $50 million fee.
If you had just stolen the schematics and didn't attempt to extort Apple you probably wouldn't be in this mess.
Serves him right.
Score: 12 Votes (Like | Disagree)
DHagan4755 Avatar
57 months ago
Wow! I didn't think they'd ever get caught.
Score: 9 Votes (Like | Disagree)
Killa Aaron Avatar
57 months ago
Hackers are smart and stupid at the same time, its one thing to data mine and find a company's new products before release but to sit there and think any company will kneel to extortion is just ridiculous, it has never happened.
Score: 7 Votes (Like | Disagree)
Shirasaki Avatar
57 months ago

6.1 million in ‘assets’? What exactly at this value is considered assets?
Usually just random valuation and vague claimed damage as long as Apple can get away with it.
Score: 7 Votes (Like | Disagree)
JPack Avatar
57 months ago

Hackers are smart and stupid at the same time, its one thing to data mine and find a company's new products before release but to sit there and think any company will kneel to extortion is just ridiculous, it has never happened.
Apple obviously paid the ransom and the FBI followed the money.

This hacker's real mistake was he was in Poland. If was further east, he would still be on the wanted list.
Score: 7 Votes (Like | Disagree)
JPack Avatar
57 months ago

I figured for every case, the ransom IS PAID, we rarely, if ever, hear about it and the bad guys keep getting away with holding everybody & everything hostage because it pays. Boo!
Because for the vast majority of cases, the ransom is paid. From a business perspective, you go with the option that results in the lowest cost and the least amount of downtime. No business out there has time to make a political statement. Heck, the U.S. government openly negotiates with the Taliban. Everybody knows there's propaganda for the domestic voting audience vs. reality.
Score: 6 Votes (Like | Disagree)