A Russian man, Searzhudin Tamirlanovich Aktulaev, has been extradited to the U.S. for his alleged role in a malware distribution campaign targeting around 80,000 users of a freelance employment platform. Arrested in Cyprus in May 2025 and extradited in August 2026, he faces multiple charges, including conspiracy and identity theft.
Between June 2016 and November 2017, Aktulaev and associates reportedly used fake accounts to distribute malicious Microsoft Excel attachments that deployed remote access trojans (RATs)—specifically TVRAT and DarkVNC—allowing them to control infected computers and steal sensitive data. The malicious activities primarily affected victims in the U.S., and a grand jury indictment could lead to a maximum of 20 years in prison for Aktulaev, who remains in federal custody pending further court proceedings.