Massive op takes down ransomware networks, arrests 4 suspects

| | THE HAGUE (netherlands)
  • 0

Massive op takes down ransomware networks, arrests 4 suspects

Friday, 31 May 2024 | AP | THE HAGUE (netherlands)

Police coordinated by the European Union’s justice agency have taken down computer networks responsible for spreading ransomware via infected emails, in what they called the biggest ever international operation against the lucrative form of cybercrime.

The European Union’s judicial cooperation agency, Eurojust, said Thursday that police arrested four “high value” suspects, took down more than 100 servers and seized control of over 2,000 internet domains.

The huge takedown this week involved coordinated raids in Germany, the Netherlands, France, Denmark, Ukraine, the United States and United Kingdom, Eurojust said.

The operation followed a massive takedown in 2021 of a botnet called Emotet, Eurojust said. A botnet is a network of hijacked computers typically used for malicious activity.

Dutch police said in a statement that the financial damage inflicted by the network on governments, companies and individual users is estimated to run to hundreds of millions of euros (dollars).

“Millions of people are also victims because their systems were infected, making them part of these botnets,” the Dutch statement said.

Eurojust said that one of the main suspects earned cryptocurrency worth at least 69 million euros (USD 74 million) by renting out criminal infrastructure for spreading ransomware.

The operation targeted malware “droppers” called IcedID, Pikabot, Smokeloader, Bumblebee and Trickbot. A dropper is malicious software usually spread in emails containing infected links or attachments such as shipping invoices or order forms.

“This operation shows that you always leave tracks, nobody is unfindable, even online,” Stan Duijf, of the Dutch National Police, said in a video statement.

The deputy head of Germany’s Federal Criminal Police Office, Martina Link, described it as “the biggest international cyber police operation so far.”

“Thanks to intensive international cooperation, it was possible to render six of the biggest malware families harmless,” she said in a statement.

German authorities are investigating seven people on suspicion of being members of a criminal organization whose aim was to spread the Trickbot malware. An eighth person is suspected of being one of the ringleaders of the group behind Smokeloader.

Sunday Edition

On A Fun Filled Pawcation!

30 June 2024 | Sharmila Chand | Agenda

FROM THE PEN OF A GROUNDED POET

30 June 2024 | Swati Pal | Agenda

Journey to an expanded self awareness

30 June 2024 | Deepak Kumar Jha | Agenda

TANGRA TALES

30 June 2024 | Shobori Ganguli | Agenda

Disappointing Service Mars Fine Dining Experiences

30 June 2024 | Pawan Soni | Agenda

Guruspeak | Do you pray?

30 June 2024 | Sri Sri Ravi Shankar | Agenda