{"id":2167,"date":"2025-11-14T14:44:52","date_gmt":"2025-11-14T09:44:52","guid":{"rendered":"https:\/\/paknews.centers.pk\/police-take-down-three-cybercrime-operations-in-latest-round-of-whack-a-mole\/"},"modified":"2025-11-14T14:44:52","modified_gmt":"2025-11-14T09:44:52","slug":"police-take-down-three-cybercrime-operations-in-latest-round-of-whack-a-mole","status":"publish","type":"post","link":"https:\/\/paknews.centers.pk\/ur\/police-take-down-three-cybercrime-operations-in-latest-round-of-whack-a-mole\/","title":{"rendered":"Police take down three cybercrime operations in latest round of &#8216;whack-a-mole&#8217;"},"content":{"rendered":"<p><br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">An international coalition of law enforcement agencies coordinated by Europol targeted and took down three cybercrime operations in its latest round of what authorities call \u201cOperation Endgame.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.europol.europa.eu\/media-press\/newsroom\/news\/end-of-game-for-cybercrime-infrastructure-1025-servers-taken-down\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">In a press release<\/a>, Europol said that the police operation targeted the <a href=\"https:\/\/techcrunch.com\/2025\/04\/25\/techcrunch-reference-guide-to-security-terminology\/#infostealers\" target=\"_blank\" rel=\"noopener\">infostealing malware<\/a> Rhadamanthys, a botnet called Elysium, and the remote access trojan VenomRAT. The authorities say all three \u201cplayed a key role in international cybercrime.\u201d Police seized more than 1,000 servers as part of the operation.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Europol said police arrested the unnamed \u201cmain suspect\u201d behind VenomRAT in Greece on November 3.<\/p>\n<p class=\"wp-block-paragraph\">\u201cThe dismantled malware infrastructure consisted of hundreds of thousands of infected computers containing several million stolen credentials,\u201d the press release read. \u201cMany of the victims were not aware of the infection of their systems.\u201d<\/p>\n<p class=\"wp-block-paragraph\">According to Europol, the main suspect behind Rhadamantys had access to over 100,000 crypto wallets, \u201cpotentially worth millions of euros.\u201d<\/p>\n<p class=\"wp-block-paragraph\">As an infostealer, Rhadamantys is designed to steal various kinds of information from infected devices, including passwords and cryptocurrency wallet keys. Rhadamantys spiked in popularity in October after authorities <a href=\"https:\/\/www.europol.europa.eu\/media-press\/newsroom\/news\/europol-and-microsoft-disrupt-world%E2%80%99s-largest-infostealer-lumma\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">took down the popular infostealer Lumma<\/a> earlier in the year, showing that after takedowns, criminals adapt by using different hacking tools that might be less known at the time.<\/p>\n<p class=\"wp-block-paragraph\">When Rhadamantys launched in 2022, it initially relied on spreading through malicious Google advertisements, and later grew thanks to word-of-mouth on underground forums, according to Lumen\u2019s Black Lotus Labs, one of the cybersecurity industry partners in Operation Endgame.\u00a0<\/p>\n<div class=\"wp-block-techcrunch-inline-cta\">\n<div class=\"inline-cta__wrapper\">\n<p>Techcrunch event<\/p>\n<div class=\"inline-cta__content\">\n<p>\n\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__location\">San Francisco<\/span><br \/>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__separator\">|<\/span><br \/>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__date\">October 13-15, 2026<\/span>\n\t\t\t\t\t\t\t<\/p>\n<\/p><\/div>\n<\/p><\/div>\n<\/div>\n<p class=\"wp-block-paragraph\">The firm <a href=\"https:\/\/www.linkedin.com\/pulse\/rhadamanthys-meets-justice-blacklotuslabs-ugf7e\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">wrote in a blog post<\/a> that Rhadamantys had a \u201cdramatic uptick\u201d and a \u201cconsistent rise in the number of victims\u201d after the Lumma takedown, making it \u201cthe largest information-stealer malware by volume.\u201d In October, the infostealer had compromised more than 12,000 victims, according to the firm.<\/p>\n<p class=\"wp-block-paragraph\">Ryan English, a researcher at Black Lotus Labs, told TechCrunch that Rhadamantys \u201cemerged as the \u2018next\u2019 go-to infostealer\u201d after Lumma went down.<\/p>\n<p class=\"wp-block-paragraph\">\u201cWe know that others will take their place, so we just keep tracking to see who\u2019s emerging from that,\u201d said English, adding that law enforcement and the wider industry \u201ccan only do so much at any time.\u201d\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cSo in a very real sense, it\u2019s whack-a-mole forever,\u201d said English.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2025\/11\/13\/police-take-down-three-cybercrime-operations-in-latest-round-of-whack-a-mole\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>An international coalition of law enforcement agencies coordinated by Europol targeted and took down three cybercrime operations in its latest round of what authorities call \u201cOperation Endgame.\u201d In a press release, Europol said that the police operation targeted the infostealing malware Rhadamanthys, a botnet called Elysium, and the remote access trojan VenomRAT. The authorities say [&hellip;]<\/p>","protected":false},"author":1,"featured_media":2168,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[36],"tags":[],"class_list":["post-2167","post","type-post","status-publish","format-standard","has-post-thumbnail","category-tech"],"_links":{"self":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/2167","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/comments?post=2167"}],"version-history":[{"count":0,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/2167\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media\/2168"}],"wp:attachment":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media?parent=2167"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/categories?post=2167"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/tags?post=2167"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}