Europol: Largest ever operation against botnets hits dropper malware ecosystem


Between 27 and 29 May 2024 Operation Endgame, coordinated from Europol’s headquarters, targeted droppers including, IcedID, SystemBC, Pikabot, Smokeloader, Bumblebee and Trickbot.

The actions focused on disrupting criminal services through arresting High Value Targets, taking down the criminal infrastructures and freezing illegal proceeds. This approach had a global impact on the dropper ecosystem. The malware, whose infrastructure was taken down during the action days, facilitated attacks with ransomware and other malicious software. Following the action days, eight fugitives linked to these criminal activities, wanted by Germany, will be added to Europe’s Most Wanted list on 30 May 2024. The individuals are wanted for their involvement in serious cybercrime activities. This is the largest ever operation against botnets, which play a major role in the deployment of ransomware.

Read more…
Source: Europol


Sign up for our Newsletter


Related:

  • Europol, Microsoft, TrendAI and Collaborators Halt Tycoon 2FA Operations

    March 4, 2026

    Researchers from TrendAI have been tracking the infrastructure, as well as the campaigns and operator behaviors that can be linked to Tycoon 2FA to build a clearer picture of how its services was being used at scale. By November 2025, TrendAI had collected enough data to link the operation to an actor using the monikers “SaaadFridi” ...

  • Russia: Over 200 people involved in SIM box operations detained since September 2025

    March 2, 2026

    The Federal Security Service (FSB), the Interior Ministry, and the Investigative Committee of Russia have uncovered and disrupted 100 illegal communication channels used by Ukrainian intelligence services to involve Russians in sabotage and terrorism since September 1, 2025, with over 200 people involved in running SIM boxes detained across 43 Russian regions. “As a result <…> ...

  • Ukrainian gets five years for helping North Koreans secure US tech jobs

    February 20, 2026

    Ukrainian national Oleksandr Didenko will spend the next five years behind bars in the US for his involvement in helping North Korean IT workers secure fraudulent employment. The 29-year-old played a role in supporting individuals working for a hostile regime to get contracts in the US. In November 2025, Didenko pleaded guilty to wire fraud and ...

  • Chinese hack exposes data of 5,000 Italian counterterrorism officers

    February 18, 2026

    Personal data of roughly 5,000 Italian Digos officers — including names, roles and postings — was reportedly obtained by hackers linked to China after a cyber intrusion into the Interior Ministry’s network between 2024 and 2025. The breach potentially exposes officers involved in counterterrorism and monitoring Chinese dissidents, raising serious national security concerns and complicating Italy’s ...

  • US Department of Homeland Security reportedly sent hundreds of subpoenas seeking to unmask anti-ICE accounts

    February 14, 2026

    The Department of Homeland Security has been increasing pressure on tech companies to identify the owners of social media accounts that criticize Immigration and Customs Enforcement (ICE), according to The New York Times. This echoes other recent reporting, with Bloomberg pointing to five cases in which Homeland Security sought to identify the owners of anonymous Instagram ...

  • Pakistan, China to boost liaison in intelligence sharing, cybercrime prevention

    February 6, 2026

    Pakistan and China on Thursday agreed to enhance cooperation in intelligence sharing and cybercrime prevention. The understanding was reached during a meeting between Federal Interior Minister Mohsin Naqvi and Chinese Ambassador in Pakistan Jiang Zaidong. Upon his arrival at the Ministry of Interior, the Federal Interior Minister welcomed the Chinese Ambassador. During the meeting, detailed discussions ...