Cybercrime 22,000 IPs Taken Down in Global Cybercrime Crackdown Over 22,000 malicious IPs were taken down in a law enforcement operation against phishing, infostealers, and ransomware. Ionut ArghireNovember 6, 2024
Malware & Threats RedLine and Meta Infostealers Disrupted by Law Enforcement Authorities announce server shutdowns, domain seizures, and arrests in RedLine and Meta infostealers takedown operation. Ionut ArghireOctober 29, 2024
Phishing AWS Seizes Domains Used by Russia’s APT29 AWS announced the seizure of domains used by Russian hacker group APT29 in phishing attacks targeting Ukraine and other countries. Eduard KovacsOctober 25, 2024
Malware & Threats Bumblebee Malware Loader Resurfaces Following Law Enforcement Takedown New malicious campaign suggests the Bumblebee malware loader might be resurfacing following the May 2024 law enforcement takedown. Ionut ArghireOctober 22, 2024
Mobile & Wireless Law Enforcement Dismantles Phishing Platform Used for Unlocking Stolen Phones The iServer phishing-as-a-service platform was used by Spanish-speaking criminals to harvest credentials and unlock stolen and lost phones. Ionut ArghireSeptember 20, 2024
Nation-State US Disrupts ‘Raptor Train’ Botnet of Chinese APT Flax Typhoon The US government has announced the disruption of Raptor Train, a Flax Typhoon botnet powered by hacked consumer devices. Eduard KovacsSeptember 19, 2024
Tracking & Law Enforcement Australian Police Infiltrate Encrypted Messaging App Ghost and Arrest Dozens Australian police have infiltrated encrypted messaging app Ghost, which has been used for illegal activities, and arrested dozens of people. Associated PressSeptember 18, 2024
Nation-State Google Disrupts Iranian Hacking Activity Targeting US Presidential Election Google says it blocked Iranian APT42 hackers from accessing the personal email accounts of individuals affiliated with the US elections. Ionut ArghireAugust 15, 2024
Cybercrime Radar/Dispossessor Ransomware Operation Disrupted by Authorities Law enforcement agencies in the US, Germany, and the UK have disrupted the Radar/Dispossessor ransomware infrastructure. Ionut ArghireAugust 13, 2024
Cybercrime Law Enforcement Disrupts DDoS-for-Hire Service DigitalStress Authorities in the UK infiltrated and disrupted the DDoS-for-hire service DigitalStress, and one suspect was arrested. Ionut ArghireJuly 23, 2024
Malware & Threats TrickBot and Other Malware Droppers Disrupted by Law Enforcement The TrickBot botnet and other malware droppers have been targeted by international law enforcement in Operation Endgame. Ionut ArghireMay 30, 2024
Malware & Threats Massive 911 S5 Botnet Dismantled, Chinese Mastermind Arrested The US announced that the 911 S5 (Cloud Router) botnet, likely the world’s largest, has been dismantled and its administrator arrested. Eduard KovacsMay 30, 2024