Police take several botnets used in ransomware attacks offline

During an international operation by investigative authorities, several botnets that played an important role in ransomware attacks were taken offline. In the Netherlands, 33 servers were taken offline and one search was conducted.

The international investigative authorities took the botnets IcedID, Smokeloader, SystemBC, Pikabot and Bumblebee offline on Tuesday, May 28, under the name 'Operation Endgame'. The Dutch police spoke in an announcement about the largest operation ever to combat botnets involved in ransomware worldwide.

More than a hundred servers worldwide were taken offline and more than two thousand domain names were taken over. The investigative services were also able to disinfect more than ten thousand infected computer systems by uninstalling the malware. In recent days there have been four arrests and sixteen searches worldwide, including one in the Netherlands. Eight summons have also been issued against suspects.

It is estimated that the criminals behind the botnets have caused hundreds of millions of euros in financial damage to companies and government institutions. Millions of private individuals have also become victims because their systems were infected and made part of the botnet. A system was infected via phishing: victims were tricked into clicking on a fake link. On the police site Check your hack, people can check whether they too have been affected and whether they were part of the dismantled botnets. In addition, the police are working with the DIVD to inform all victims by email, the organization reports on its website.

The operation was carried out by authorities in the Netherlands, Germany, France, Denmark, the United States, the United Kingdom, with support from Europol and Eurojust. The Dutch police emphasize that Operation Endgame is not ending yet, but that new actions will be announced in the future. In addition, suspects of these and other botnets who have not yet been arrested will be directly held accountable for their actions.


Posted

in

by

Tags:

Comments

Leave a Reply