Global Effort Targeted Fake Computer Updates Tied to Russian Cybercriminals: RCMP
Authorities took 106 servers offline and cleaned nearly 15,000 WordPress sites in a multinational effort against the SocGholish malware network.
- On Thursday, Authorities, including the FBI and Europol, disrupted the SocGholish botnet and seized infrastructure linked to the Russian cybercrime group Evil Corp as part of Operation Endgame.
- The malware SocGholish, also known as "FakeUpdates," has compromised WordPress websites since at least 2017 to redirect users to malware and facilitate ransomware campaigns for Evil Corp.
- Authorities remediated 14,971 compromised WordPress sites and took 106 servers offline, an effort Maikel Rollman of the National High Tech Crime Unit said deprives Cybercriminals of access to infected systems.
- Rollman stated the takedown prevents further damage to digital systems worldwide and reduces risks to critical infrastructure, while the Dutch National Police advised website owners to update credentials and enable multi-factor authentication.
- "This marks the beginning of further action against SocGholish," Rollman said, as Authorities continue the multinational Operation Endgame effort targeting the infrastructure and financial networks Cybercriminals use to commit fraud.
34 Articles
34 Articles
RCMP Works With International Operation to Target Russia-Based Cybercrime Network
The RCMP has joined law enforcement agencies in the United States and other countries in dismantling a Russia-based cybercrime group accused of using malware to target WordPress users worldwide. Operation Endgame sought to disrupt the malware framework SocGholish, which tricked users into downloading malicious files under the guise of legitimate computer updates, according to a June 18 RCMP news release. The investigation found that SocGholish h…
It partnered with its counterparts in the Netherlands, the United States and Germany to conduct an operation against the Russian cybercriminal group Evil Corp.
Global effort targeted fake computer updates tied to Russian cybercriminals: RCMP
OTTAWA - The RCMP says it worked with international partners to deal a blow to cybercriminals who trick users into downloading malicious files disguised as legitimate computer updates.
Authorities disrupt Evil Corp’s SocGholish botnet
Authorities on Thursday disrupted a botnet, a malware framework and seized infrastructure that Evil Corp and other cybercrime groups used to steal data and break into various networks. The globally coordinated effort targeted SocGholish, multi-stage malware that has compromised websites, redirected users to traffic distribution systems (TDS) and slipped malware into their networks since 2017. “The malware establishes an initial foothold into vic…
Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp
International law enforcement agencies cleaned nearly 15,000 malware-infected WordPress websites and took down more than 100 servers linked to the SocGholish botnet and the Evil Corp Russian cybercrime group.
Coverage Details
Bias Distribution
- 72% of the sources lean Left
Factuality
To view factuality data please Upgrade to Premium















