Russian-led cybercrime network dismantled in global operation
ID: ee2aee42-3687-5bf8-83af-0bc755d6914c
STIX ID: report--ee2aee42-3687-5bf8-83af-0bc755d6914c
Feed Name: The Guardian – Data & Computer Security
Date Published: 2025-05-23
Date Updated: 2026-04-23
Author: Lisa O'Carroll and Kate Connolly in Berlin
European and North American law enforcement carried out a coordinated operation (Operation Endgame) that dismantled core infrastructure of Russian-linked cybercriminal groups behind Qakbot, DanaBot/Danabot, Trickbot and Conti, unsealed indictments and issued international arrest warrants for multiple suspects; the groups are accused of large-scale malware distribution (over 300,000 infections), ransomware extortion (including attacks on hospitals and major companies) and an espionage variant targeting military, diplomatic and government organisations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
