Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp
ID: 036ca47f-0462-5360-9d57-eae08c09f3e4
STIX ID: report--036ca47f-0462-5360-9d57-eae08c09f3e4
Feed Name: Bleeping Computer
International law enforcement agencies (supported by Europol and Eurojust) conducted Operation Endgame to remove SocGholish infections from approximately 14,971 compromised WordPress sites and take 106 servers/domains offline; the SocGholish JavaScript downloader (aka FakeUpdates/GhoLoader) has been active since 2017, is used to deploy various malware and ransomware linked to the Russian cybercrime group Evil Corp, and the takedown aims to disrupt this infection chain and prevent further abuse.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
