• Home
  • News
  • AI
  • Cyber
  • GRC
  • Blogs
  • Live CVE
No Result
View All Result
Sumtrix
  • Home
  • News
  • AI
  • Cyber
  • GRC
  • Blogs
  • Live CVE
No Result
View All Result
Sumtrix
No Result
View All Result
Home Cyber

Breaking News: 16 Indicted in $50M DanaBot Cybercrime Operation Takedown

Jane Doe by Jane Doe
May 23, 2025
in Cyber
Breaking News: 16 Indicted in M DanaBot Cybercrime Operation Takedown
Share on FacebookShare on Twitter

A major global cybercrime operation has been dealt a significant blow after an international operation led to the indictment of 16 individuals associated with a global cybercrime network using the infamous DanaBot banking malware, law enforcement authorities announced today.

Operation Endgame, an international law enforcement operation, has disrupted the infrastructure of GozNym, an international cybercriminal network responsible for the development, operation, and dissemination of a banking trojan by the same name that is believed to have stolen millions of dollars from its victims.

The indictment, which was unsealed by the U.S. Department of Justice, detailed that the 16 defendants allegedly created, spread, and controlled the DanaBot malware, which at its height compromised over 300,000 computers around the world.

Read

App Store Power and Censorship: How Apple and Google Shape Your Digital Future

Google Sets Sights on Defying Gravity with Antigravity Project

The sophisticated malware-as-a-service (MaaS) scheme allowed cybercriminals to obtain sensitive information, compromise banks accounts and deploy ransomware.

Particularly, one version of DanaBot was also leveraged to attack military, diplomatic and government organisations in Europe and North America for the sake of spying.

The Russia-based cybercrime outfit responsible for DanaBot also rented out the malware and associated malspamming and support utilities to other crooks for a few thousand dollars per month, according to court documents.

The malware featured an expansive list of malicious functions, including keylogging and screen recording, and offered full remote control of infected systems. It was also leveraged to proceed with other malware, including many strains of ransomware.

Today’s announcement of the takedown follows a sprawling investigation by the FBI’s Anchorage Field Office and the Defense Criminal Investigative Service (DCIS), with critical support provided by international partners in Germany, the Netherlands, and Australia, and dozens of cybersecurity firms.

Two top figures whom officials believe are in Russia, Aleksandr Stepanov, 39, known as JimmBee, and Artem Aleksandrovich Kalinkin, 34, known as Onix, were indicted.

Although the individuals are not in custody, the charges demonstrate that international law enforcement remains determined to track down cyber-criminals.

“Global malware like DanaBot victimize hundreds of thousands of people worldwide, including sensitive military, diplomatic and government targets, and costs millions of dollars in damages,” said United States Attorney Bill Essayli for the Central District of California.

“Today’s charges and seizures demonstrate the department’s commitment to unmasking the perpetrators behind these sophisticated attacks, and to holding them accountable wherever they are,” he said.

This takedown represents yet another major victory for Operation Endgame, an ongoing effort to identify and dismantle the global infrastructure of many of the most prevalent malware operations. Operations Endgame Additional ENF operations are anticipated to follow.

Cybersecurity researchers think that taking down the DanaBot network will cause a “fairly sizable” disruption in the cybercrime industry, because criminals will have to adjust their tactics, and because the takedown could erode trust in criminal communities.

Previous Post

Kuo Reveals OpenAI and Jony Ive’s Innovative AI Device to Enter Mass Production in 2027

Next Post

Microsoft Leads Global Effort to Dismantle Lumma Stealer Malware Network

Jane Doe

Jane Doe

More Articles

Operation WrtHug Hijacks Tens of Thousands ASUS Routers
Latest News

Operation WrtHug Hijacks Tens of Thousands ASUS Routers

Massive Infection: Tens of thousands of end-of-life ASUS WRT routers compromised worldwide, mainly in Taiwan, the US, and Russia. Exploit...

by Sumit Chauhan
November 19, 2025
WhatsApp Worm Delivers Brazilian Banking Trojan
Cyber

WhatsApp Worm Delivers Brazilian Banking Trojan

Worm Spread: Python-scripted WhatsApp worm targets Brazil, hijacking accounts to send a Delphi-based banking trojan, Eternidade Stealer. Infection Path: Starts...

by Sumit Chauhan
November 19, 2025
FBI Sounds Alarm on Akira Ransomware’s 0 Million Haul
Cyber

FBI Sounds Alarm on Akira Ransomware’s $250 Million Haul

Ransom Total: $248.9 million from 321 victims—mostly US firms in tech, finance, healthcare since May 2023. Tactics: Double extortion—encrypts files,...

by Max Mueller
November 16, 2025
US Car Dealers Grind to Halt in CDK Ransomware Chaos
Cyber

US Car Dealers Grind to Halt in CDK Ransomware Chaos

Scale Hit: 15,000+ dealerships across US and Canada offline—sales, financing, service apps down for weeks. Financial Sting: $1.2 billion lost...

by Mayank Singh
November 16, 2025
Next Post
Microsoft Leads Global Effort to Dismantle Lumma Stealer Malware Network

Microsoft Leads Global Effort to Dismantle Lumma Stealer Malware Network

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

Latest News

China Accuses US of Cyberattacks Using Microsoft Email Server Flaws

China Accuses US of Cyberattacks Using Microsoft Email Server Flaws

August 1, 2025
Online Scam Cases Continue to Rise Despite Crackdowns on Foreign Fraud Networks [Myanmar]

Online Scam Cases Continue to Rise Despite Crackdowns on Foreign Fraud Networks [Myanmar]

June 30, 2025
Stay Safe from Ransomware Using Skitnet Malware Techniques

Stay Safe from Ransomware Using Skitnet Malware Techniques

May 20, 2025
MMaDA-Parallel: Advanced Multimodal Model Revolutionizing Content Generation

MMaDA-Parallel: Advanced Multimodal Model Revolutionizing Content Generation

November 19, 2025
Anthropic Blocks AI Misuse for Cyberattacks

Anthropic Blocks AI Misuse for Cyberattacks

August 28, 2025
New VoIP Botnet Targets Routers Using Default Passwords

New VoIP Botnet Targets Routers Using Default Passwords

July 25, 2025
Aflac Incorporated Discloses Cybersecurity Incident

Aflac Incorporated Discloses Cybersecurity Incident

June 20, 2025
Sumtrix.com

© 2025 Sumtrix – Your source for the latest in Cybersecurity, AI, and Tech News.

Navigate Site

  • About
  • Contact
  • Privacy Policy
  • Advertise

Follow Us

No Result
View All Result
  • Home
  • News
  • AI
  • Cyber
  • GRC
  • Blogs
  • Live CVE

© 2025 Sumtrix – Your source for the latest in Cybersecurity, AI, and Tech News.

Our website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.