arstechnica.com 29 days ago URGENCY: 7/10

Global Operation Disrupts Major Cybercrime Network

A coordinated global effort has dismantled a cybercrime assembly line, recovering millions in stolen assets. Discover how authorities targeted two key tools to disrupt this criminal operation.

Share
Global Operation Disrupts Major Cybercrime Network

Major Disruption in Cybercrime

International authorities, alongside private tech firms, have successfully disrupted a significant cybercrime operation that has been responsible for stealing over $47 million through various scams. This operation targeted two widely used tools: Amadey, a malware-as-a-service platform, and StealC, an infostealer service. Both tools were integral to the cybercrime ecosystem, allowing criminals to gain access to devices and steal sensitive information.

The simultaneous takedown of these tools was made possible by a detailed analysis from Microsoft, which identified their shared infrastructure. This insight led to legal actions under RICO statutes, treating the tools as part of a larger conspiracy. As a result, law enforcement agencies were able to disrupt over 200 command-and-control servers and regain control of more than 18,000 infected computers. The operation, dubbed "Operation Endgame," also recovered approximately 27 million stolen login credentials and uncovered $47 million in crypto assets linked to criminal activities.

This collaborative effort between law enforcement and private sector partners has significantly increased the challenges faced by cybercriminals, making it harder for them to execute and expand their operations.