logo

Russian-led cybercrime network dismantled in global operation

ID: ee2aee42-3687-5bf8-83af-0bc755d6914c

STIX ID: report--ee2aee42-3687-5bf8-83af-0bc755d6914c

Feed Name: The Guardian – Data & Computer Security

Threat Score
80/100

Date Published: 2025-05-23

Date Updated: 2026-04-23

Author: Lisa O'Carroll and Kate Connolly in Berlin

...
...

European and North American law enforcement carried out a coordinated operation (Operation Endgame) that dismantled core infrastructure of Russian-linked cybercriminal groups behind Qakbot, DanaBot/Danabot, Trickbot and Conti, unsealed indictments and issued international arrest warrants for multiple suspects; the groups are accused of large-scale malware distribution (over 300,000 infections), ransomware extortion (including attacks on hospitals and major companies) and an espionage variant targeting military, diplomatic and government organisations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.