Loading…
Loading…
OFAC designated Aeza Group, a bulletproof-hosting (BPH) services provider headquartered in St. Petersburg, Russia, under Executive Order 13694 (as further amended by E.O. 14144 and E.O. 14306) for cyber-enabled activity that materially contributed to threats against U.S. national security, economic health, and financial stability. BPH providers sell server and IP infrastructure engineered to help cybercriminals evade detection and resist law-enforcement disruption.
Aeza Group hosted infrastructure for the Meduza and Lumma infostealer operations (which targeted the U.S. defense industrial base and technology companies), BianLian ransomware, RedLine infostealer panels, and BlackSprut — a Russian darknet marketplace used to traffic narcotics, including fentanyl precursor chemicals, into the United States.
The designation covers, per the primary Treasury press release:
Bozoyan (general director, 33% owner), Vladimir Vyacheslavovich Gast (technical director), and Igor Anatolyevich Knyazev (33% owner)
cybercriminals — designated in coordination with the UK National Crime Agency
Treasury frames the action as building on its February 2025 designation of ZServers, another Russia-based BPH provider, signaling a sustained OFAC campaign against the BPH layer of the cybercrime ecosystem.
2025-11-19-us-ofac-media-land-aeza-cybercrime-infrastructure-sanctions)documents: Aeza's leadership subsequently attempted to evade this designation by rebranding infrastructure through Hypercore Ltd. (UK), Smart Digital Ideas DOO (Serbia), and Datavice MCHJ (Uzbekistan) — all three were designated in the November follow-up action.
Group Jul 2025 → Media Land/Aeza evasion network Nov 2025) targeting the infrastructure layer underlying ransomware-as-a-service rather than the ransomware operators themselves.
is a template for allied action against BPH providers using third-country shell entities.
legitimate commercial operations distinct from supporting Aeza's BPH infrastructure.
IPTM register (not yet confirmed as of this filing).