logo

Microsoft and Authorities Dismatles BEC Attack Chain Powered By RedVDS Fraud Engine

ID: 1e7a0d03-9fab-5722-9b5c-dbd90cae88d6

STIX ID: report--1e7a0d03-9fab-5722-9b5c-dbd90cae88d6

Feed Name: GBHackers

Threat Score
78/100

Date Published: 2026-01-15

Date Updated: 2026-04-22

Author: Varshini

...
...

**Executive summary:** Microsoft, supported by U.S., U.K., German authorities and Europol, dismantled RedVDS — a subscription-based cybercrime-as-a-service marketplace that rented disposable virtual machines and proxy infrastructure to criminals for phishing, BEC and AI-driven deepfake fraud; telemetry linked RedVDS to roughly $40M in verified U.S. losses, thousands of high-value compromises (including multi-million-dollar BECs), daily mass-phishing activity, and impacts across 191,000 organizations worldwide, and authorities seized key domains and servers to disrupt the service and enable attribution.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.