DoJ Arrests Hacker Involved With REvil Group That Stole Apple's MacBook Pro Schematics - MacRumors
Skip to Content

DoJ Arrests Hacker Involved With REvil Group That Stole Apple's MacBook Pro Schematics

The United States Justice Department today announced that it has arrested Ukrainian Yaroslav Vasinskyi for his involvement with REvil, a group that executed ransomware attacks against businesses and government entities in the United States.

macbook pro sizes space gray
REvil in April targeted Apple supplier Quanta Computer and stole schematics of the design of the 14 and 16-inch MacBook Pro models that were later released in October. The schematics unveiled ‌MacBook Pro‌ features like additional ports and the design of the notch, and REvil extorted Apple by threatening to release additional documents if the Cupertino company didn't pay a $50 million fee.

The ransom situation fizzled out just days after REvil made its demand, and the group mysteriously removed all documents and extortion threats related to Apple from its website.

REvil continued on with its illicit activities and in May, was responsible for a cyberattack on the Colonial Pipeline that caused gas shortages on the East Coast of the United States. In July, REvil took advantage of a vulnerability in management software designed for Kaseya, targeting between 800 and 1,500 businesses worldwide.

The DoJ says that Vasinskyi was involved in the Kaseya attack, and it's not clear if he was also part of the attack on Apple supplier Quanta Computer. He was arrested in Poland and is awaiting extradition to the United States.

Along with Vasinskyi's arrest, the Department of Justice has seized $6.1 million received by Yevgeniy Polyanin, who was also involved with REvil and was responsible for attacks against multiple victims. Two other arrests have been made in Romania, but details have not been shared.

"The arrest of Yaroslav Vasinskyi, the charges against Yevgeniy Polyanin and seizure of $6.1 million of his assets, and the arrests of two other Sodinokibi/REvil actors in Romania are the culmination of close collaboration with our international, U.S. government and especially our private sector partners," said FBI Director Christopher Wray. "The FBI has worked creatively and relentlessly to counter the criminal hackers behind Sodinokibi/REvil. Ransomware groups like them pose a serious, unacceptable threat to our safety and our economic well-being. We will continue to broadly target their actors and facilitators, their infrastructure, and their money, wherever in the world those might be."

Both Vasinskyi and Polyanin have been charged with conspiracy to commit fraud and related activity in connection with computers, substantive counts of damage to protected computers, and conspiracy to commit money laundering. Vasinskyi is facing a maximum of 115 years in prison if convicted, while Polyanin could be facing up to 145 years. Though Vasinskyi is in custody, Polyanin has not been arrested and is believed to be abroad.

The U.S. government has been working with allies in other countries to put a stop to REvil. In October, Reuters reported that multiple government agencies teamed up to hack REvil and take its "Happy Blog" website used to leak stolen documents offline.

Popular Stories

Four iPhone 18 Pro Colors Mock Feature

iPhone 18 Pro Launching in September With These 10 New Features

Monday April 20, 2026 7:13 am PDT by
While the iPhone 18 Pro and iPhone 18 Pro Max are not launching until September, there are already plenty of rumors about the devices. It was initially reported that the iPhone 18 Pro models would have fully under-screen Face ID, with only a front camera visible in the top-left corner of the screen. However, the latest rumors indicate that only one Face ID component will be moved under the...
Apple TV Thumb 3

Here's What's Coming in the 2026 Apple TV

Thursday April 23, 2026 12:08 pm PDT by
There are a lot of folks waiting for a new version of the Apple TV because the set-top box hasn't been updated since 2022. There is an update coming this year, but people will need to wait a bit longer because Apple is holding the next Apple TV until the new version of Siri comes out this fall. Design Apple TV design updates don't happen often, and that's not changing in 2026. The next...
Sad iPhone 18 Feature

Leaker: Apple to Downgrade iPhone 18 in Two Ways

Wednesday April 22, 2026 8:02 am PDT by
Following the emergence of a rumor that Apple is planning to downgrade the iPhone 18 to cut costs, further detail has emerged suggesting that display and chip specifications will see downgrades. Earlier this week, the leaker known as "Fixed Focus Digital" said that the iPhone 18 features "certain manufacturing downgrades" that bring it more into line with the low-cost iPhone 18e model. The...

Top Rated Comments

The Clark Avatar
58 months ago

REvil extorted Apple by threatening to release additional documents if the Cupertino company didn't pay a $50 million fee.
If you had just stolen the schematics and didn't attempt to extort Apple you probably wouldn't be in this mess.
Serves him right.
Score: 12 Votes (Like | Disagree)
DHagan4755 Avatar
58 months ago
Wow! I didn't think they'd ever get caught.
Score: 9 Votes (Like | Disagree)
JPack Avatar
58 months ago

Hackers are smart and stupid at the same time, its one thing to data mine and find a company's new products before release but to sit there and think any company will kneel to extortion is just ridiculous, it has never happened.
Apple obviously paid the ransom and the FBI followed the money.

This hacker's real mistake was he was in Poland. If was further east, he would still be on the wanted list.
Score: 7 Votes (Like | Disagree)
Shirasaki Avatar
58 months ago

6.1 million in ‘assets’? What exactly at this value is considered assets?
Usually just random valuation and vague claimed damage as long as Apple can get away with it.
Score: 7 Votes (Like | Disagree)
Killa Aaron Avatar
58 months ago
Hackers are smart and stupid at the same time, its one thing to data mine and find a company's new products before release but to sit there and think any company will kneel to extortion is just ridiculous, it has never happened.
Score: 7 Votes (Like | Disagree)
JPack Avatar
58 months ago

I figured for every case, the ransom IS PAID, we rarely, if ever, hear about it and the bad guys keep getting away with holding everybody & everything hostage because it pays. Boo!
Because for the vast majority of cases, the ransom is paid. From a business perspective, you go with the option that results in the lowest cost and the least amount of downtime. No business out there has time to make a political statement. Heck, the U.S. government openly negotiates with the Taliban. Everybody knows there's propaganda for the domestic voting audience vs. reality.
Score: 6 Votes (Like | Disagree)