Operation Endgame follow-up leads to five detentions and interrogations as well as server takedowns


Following the massive botnet takedown codenamed Operation Endgame in May 2024, which shut down the biggest malware droppers, including IcedID, SystemBC, Pikabot, Smokeloader and Bumblebee, law enforcement agencies across North America and Europe dealt another blow to the malware ecosystem in early 2025.

In a coordinated series of actions, customers of the Smokeloader pay-per-install botnet, operated by the actor known as ‘Superstar’, faced consequences such as arrests, house searches, arrest warrants or ‘knock and talks’. Superstar used his botnet to run a pay-per-install service, enabling customers to gain access to victims’ machines. Customers used the service to deploy malware for their own criminal activities. Investigations revealed that botnet access was purchased for a range of purposes, including keylogging, webcam access, ransomware deployment, cryptomining and more.

Read more…
Source: Europol


Sign up for our Newsletter
The latest news and insights delivered right to your inbox.


Related:

  • Unveiling the Fallout: Operation Cronos’ Impact on LockBit Following Landmark Disruption

    April 3, 2024

    The RaaS group LockBit that has been in operation since early 2020, grew to become one of the largest RaaS groups in the ransomware ecosphere and was responsible for 25% to 33% of all ransomware attacks in 2023. The group has claimed thousands of victims and was, by far, the biggest financial threat actor group in ...

  • HPSCI: Bill Seeks to Expand Surveillance Powers to Combat International Drug Trafficking

    March 30, 2024

    In a significant move on Capitol Hill, Representatives Chrissy Houlahan (D-PA) and Dan Crenshaw (R-TX), both serving on the House Permanent Select Committee on Intelligence, this week introduced a groundbreaking bipartisan bill aimed at bolstering the United States’ efforts against international drug trafficking networks. The Enhancing Intelligence Collection on Foreign Drug Traffickers Act of 2024 proposes ...

  • Cambodia: Police target growing gambling, cybercrime

    March 27, 2024

    Deputy Prime Minister and Minister of Interior Sar Sokha has called on the National Police forces to intensify efforts in preventing and suppressing local crimes, including human trafficking, cybercrime and gambling. The appeal comes after authorities clamped down on over 500 illegal gambling sites and detained more than 1,000 people in the past six months. Sokha ...

  • YouTube ordered to reveal the identities of video viewers

    March 26, 2024

    Federal US authorities have asked Google for the names, addresses, telephone numbers, and user activity of accounts that watched certain YouTube videos, according to unsealed court documents Forbes has seen. Of those users that weren’t logged in when they watched those videos between January 1 and 8, 2023, the authorities asked for the IP addresses. The ...

  • High Court order will deliver ‘swift management’ of compensation claims by those affected by PSNI data breach

    March 24, 2024

    Claims by officers and civilian staff following a major PSNI data breach will be managed in a “swift” manner following a High Court order being granted, it has been suggested. Following the granting of a Group Litigation Order (GLO), thousands of claims by those impacted by last year’s data breach can now be dealt with, the ...

  • UK: ‘Mass surveillance’ fears over law change plans

    March 22, 2024

    The UK tech industry has deep concerns over government plans to amend a law dubbed a “snooper’s charter”. Ministers insist their changes to the Investigatory Powers Act is intended to keep UK citizens safe. But, in a statement, trade body techUK said the changes were neither balanced nor proportionate. It warns that citizens’ privacy, security and safety ...