logo

Police arrests 4 Phobos ransomware suspects, seizes 8Base sites

ID: d2127180-7b44-5c6e-a5b1-f20479b837a3

STIX ID: report--d2127180-7b44-5c6e-a5b1-f20479b837a3

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2025-02-10

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

**Executive summary:** A multinational law enforcement operation dubbed "Phobos Aetor" led to arrests in Thailand and seizure of the 8Base ransomware group's dark web infrastructure; authorities allege the actors used the Phobos encryptor and double‑extortion tactics to attack over 1,000 victims globally, extorting roughly $16M in Bitcoin and targeting businesses (including Swiss companies) by stealing data, encrypting files (.8base/.eight extensions) and demanding ransom payments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.