Cybercrime

US Sanctions Iranian Administrator of Nemesis Darknet Marketplace

Iranian national Behrouz Parsarad sanctioned for running Nemesis, a marketplace used for narcotics trafficking and cybercrime. 

Sanctions

The US Treasury Department on Tuesday announced sanctions against an Iranian national accused of running an online darknet marketplace used for trading drugs and cybercrime services.

The marketplace, named Nemesis Market, was shut down in March 2024 as a result of a law enforcement operation conducted by Germany, the US and Lithuania. 

German authorities announced after the takedown of Nemesis server infrastructure that more than 150,000 user accounts and over 1,100 seller accounts were registered on the site, which was accessible on the Tor network.

Nemesis provided a platform for drug trafficking and the trade of fraudulently obtained goods and data, as well as cybercrime services such as DDoS attacks, phishing, and ransomware. 

The Treasury Department announced sanctions against Iran-based Behrouz Parsarad, who is believed to be “the sole administrator of Nemesis”.

The sanctions are mainly over Nemesis’ use for narcotics trafficking, with authorities saying that the marketplace facilitated the sale of nearly $30 million worth of drugs between 2021 and 2024.

Advertisement. Scroll to continue reading.

Parsarad, who allegedly held full control over the website and its cryptocurrency wallets, pocketed millions of dollars through the fees he charged on every transaction. He also helped Nemesis users launder funds.

“Since the takedown of Nemesis, Parsarad has discussed setting up a new darknet marketplace to take the place of Nemesis with vendors that were once active on the marketplace,” the Treasury Department said. 

Related: Leader of North Korean Hackers Sanctioned by EU

Related: European Union Sanctions Russian Nationals for Hacking Estonia

Related: Russian Cybercrime Network Targeted for Sanctions Across US, UK and Australia

Related: Treasury Levels Sanctions Tied to a Massive Hack of Telecom Companies and Breach of Its Own Network

Related Content

Cybercrime

Oleksii Oleksiyovych Lytvynenko admitted to working on the development of a loader for the Conti gang.

Cybercrime

Researchers say the OnyxC2 malware targets more than 200 applications and extensions while evading detection through encrypted payloads, DLL sideloading, and in-memory execution techniques.

Cybercrime

Relying on social engineering, the hacking group engages in credential phishing, malware distribution, and fraud activities.

Cybercrime

Law enforcement and tech companies disrupted infrastructure linked to scammers operating across Southeast Asia.

Cybercrime

The two own Dutch companies that allegedly provided bulletproof hosting services to Russia-aligned threat actors.

Cybercrime

The FBI says First VPN has been used by dozens of ransomware groups for network reconnaissance and intrusions.

Cybercrime

The stolen credit card data was released as a free download, allegedly in response to seller misconduct.

Cybercrime

The 13-country effort, named Operation Ramz, targeted cyber threats in the Middle East and North Africa region.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version