Sumtrix
  • Home
  • News
  • AI
  • Cyber
  • GRC
  • Blogs
  • Live CVE
No Result
View All Result
Sumtrix
  • Home
  • News
  • AI
  • Cyber
  • GRC
  • Blogs
  • Live CVE
No Result
View All Result
Sumtrix
No Result
View All Result
Home Cyber

Breaking News: 16 Indicted in $50M DanaBot Cybercrime Operation Takedown

by Jane Doe
May 23, 2025
in Cyber
A A
0
Share on FacebookShare on Twitter

A major global cybercrime operation has been dealt a significant blow after an international operation led to the indictment of 16 individuals associated with a global cybercrime network using the infamous DanaBot banking malware, law enforcement authorities announced today.

Operation Endgame, an international law enforcement operation, has disrupted the infrastructure of GozNym, an international cybercriminal network responsible for the development, operation, and dissemination of a banking trojan by the same name that is believed to have stolen millions of dollars from its victims.

The indictment, which was unsealed by the U.S. Department of Justice, detailed that the 16 defendants allegedly created, spread, and controlled the DanaBot malware, which at its height compromised over 300,000 computers around the world.

The sophisticated malware-as-a-service (MaaS) scheme allowed cybercriminals to obtain sensitive information, compromise banks accounts and deploy ransomware.

Read Also

Global Connected Car Regulations Analysis Report 2025: Focus on Cybersecurity and Data Privacy

Black Hat SEO Poisoning Search Engine Results For AI

Particularly, one version of DanaBot was also leveraged to attack military, diplomatic and government organisations in Europe and North America for the sake of spying.

The Russia-based cybercrime outfit responsible for DanaBot also rented out the malware and associated malspamming and support utilities to other crooks for a few thousand dollars per month, according to court documents.

The malware featured an expansive list of malicious functions, including keylogging and screen recording, and offered full remote control of infected systems. It was also leveraged to proceed with other malware, including many strains of ransomware.

Today’s announcement of the takedown follows a sprawling investigation by the FBI’s Anchorage Field Office and the Defense Criminal Investigative Service (DCIS), with critical support provided by international partners in Germany, the Netherlands, and Australia, and dozens of cybersecurity firms.

Two leading figures whom officials believe are in Russia, Aleksandr Stepanov, 39, known as JimmBee, and Artem Aleksandrovich Kalinkin, 34, known as Onix, were indicted.

Although the individuals are not in custody, the charges demonstrate that international law enforcement remains determined to track down cyber-criminals.

“Global malware like DanaBot victimize hundreds of thousands of people worldwide, including sensitive military, diplomatic and government targets, and costs millions of dollars in damages,” said United States Attorney Bill Essayli for the Central District of California.

“Today’s charges and seizures demonstrate the department’s commitment to unmasking the perpetrators behind these sophisticated attacks, and to holding them accountable wherever they are,” he said.

This takedown represents yet another major victory for Operation Endgame, an ongoing effort to identify and dismantle the global infrastructure of many of the most prevalent malware operations. Operations Endgame Additional ENF operations are anticipated to follow.

Cybersecurity researchers think that taking down the DanaBot network will cause a “fairly sizable” disruption in the cybercrime industry, because criminals will have to adjust their tactics, and because the takedown could erode trust in criminal communities.

Jane Doe

You May Also Likes!

Iranian-backed hackers go to work after U.S. strikes
Cyber

Cyber is now the third-largest economy in the world – June 2025 Report

by Jane Doe
June 25, 2025
Iranian-backed hackers go to work after U.S. strikes
Cyber

DHS warns of heightened cyber threat as US enters Iran conflict

by Jane Doe
June 25, 2025
Iranian-backed hackers go to work after U.S. strikes
Cyber

Leak of data belonging to 7.4 million Paraguayans traced back to infostealers

by Jane Doe
June 25, 2025
Iranian-backed hackers go to work after U.S. strikes
Cyber

Billions of login credentials have been leaked online, Cybernews researchers say

by Jane Doe
June 25, 2025
Iranian-backed hackers go to work after U.S. strikes
Cyber

Global cyber alert: Iranian hackers strike U.S. banks, defence and oil firms

by Jane Doe
June 25, 2025
Load More

Recommended

Enhance Your Cybersecurity on World Environment Day with KnowBe4’s Expert Guide

Enhance Your Cybersecurity on World Environment Day with KnowBe4’s Expert Guide

June 5, 2025
New Windows RAT Exploits Corrupted Headers for Stealthy Evasion

New Windows RAT Exploits Corrupted Headers for Stealthy Evasion

May 31, 2025
23andMe Faces £2.31 Million Fine From ICO for Insufficient Data Security

23andMe Faces £2.31 Million Fine From ICO for Insufficient Data Security

June 23, 2025
Hacking AI the Right Way: A Guide to AI Red Teaming

Hacking AI the Right Way: A Guide to AI Red Teaming

May 27, 2025
Iranian-backed hackers go to work after U.S. strikes

Global Connected Car Regulations Analysis Report 2025: Focus on Cybersecurity and Data Privacy

June 25, 2025
Iranian-backed hackers go to work after U.S. strikes

Black Hat SEO Poisoning Search Engine Results For AI

June 25, 2025
Iranian-backed hackers go to work after U.S. strikes

Cyber is now the third-largest economy in the world – June 2025 Report

June 25, 2025
Iranian-backed hackers go to work after U.S. strikes

DHS warns of heightened cyber threat as US enters Iran conflict

June 25, 2025
Sumtrix.com

© 2025 Sumtrix – Your source for the latest in Cybersecurity, AI, and Tech News.

Navigate Site

  • About
  • Contact
  • Privacy Policy
  • Advertise

Follow Us

No Result
View All Result
  • Home
  • News
  • AI
  • Cyber
  • GRC
  • Blogs
  • Live CVE

© 2025 Sumtrix – Your source for the latest in Cybersecurity, AI, and Tech News.

Our website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.