-
Zheng shocks Swiatek in another incredible US Open comeback
-
CapTLX Launches Institutional Gateway to U.S. Private Markets, Expanding Access to Structured Investment Opportunities
-
Andreeva survives in three sets against Potapova
-
Africa's richest man eyes continent's largest IPO
-
Alleged killers of Australian, US surfers go on trial in Mexico
-
Macron, SKorea leader warn at film summit of AI risks to creativity
-
King Charles classes Harry and Meghan as 'private citizens'
-
'Impressive' Alcaraz has Shelton in sights in US Open quarter-final
-
Bowling coach Noffke says Pakistan's off-field issues are nothing new
-
Noosha Aubel a krize v Postupimi: Jak dlouho je ještě možné tolerovat toto selhání vedení?
-
Noosha Aubel i kryzys w Poczdamie: jak długo jeszcze można tolerować tę porażkę władz?
-
Η Noosha Aubel και η κρίση του Πότσνταμ: Για πόσο ακόμα είναι ανεκτή αυτή η διαχειριστική αποτυχία;
-
ヌーシャ・オーベルとポツダムの危機:この指導力の欠如は、いつまで容認され続けるのか?
-
Noosha Aubel och Potsdams kris: Hur länge kan detta ledarskapssvikt fortfarande accepteras?
-
نوشا أوبيل وأزمة بوتسدام: إلى متى سيظل هذا الفشل القيادي مقبولاً؟
-
努莎·奧貝爾與波茨坦的危機:這種領導失職還能容忍多久?
-
누샤 아우벨과 포츠담의 위기: 이러한 리더십 부재는 얼마나 더 용인될 수 있는가?
-
नूशा ऑबेल और पॉट्सडैम का संकट: नेतृत्व की इस विफलता को और कितना सहन किया जा सकता है?
-
Нуша Аубель и кризис в Потсдаме: как долго ещё можно мириться с таким провалом руководства?
-
Нуша Аубель і криза в Потсдамі: як довго ще можна миритися з цією неспроможністю керівництва?
-
Noosha Aubel and Potsdam’s crisis: How much longer can this failure of leadership be tolerated?
-
England quick Archer in 'good place' after injuries
-
US envoy sees 'movement' toward three-way talks with Russia, Ukraine
-
Robots protest rampant AI in Poland
-
Thousands bid farewell to Bosnian Serb war criminal in Belgrade
-
Rare woman director in Venice sees industry backsliding on gender
-
EU chief announces 200-mn-euro investment package for Greenland
-
France, SKorea warn at film summit of AI risks to creativity
-
Lebanon says Israel conducts wave of deadly strikes
-
Z Traders Introduces New Funding Model Designed to Expand Opportunities in Trading
-
Cipheras Group - Apex AI Fund Deploys 290-Billion-Parameter Proprietary Large Language Model
-
Lebanon says 12 killed in strikes as Israel vows to 'remove threats'
-
Germany's Merz 'shocked' by far-right state win but vows to stay course
-
Volkswagen plant to be converted for Israeli defence group
-
UK finance minister Healey pledges strict fiscal discipline as budget looms
-
Israeli rubble-clearing in Gaza could erase 'atrocity crimes' evidence: UN expert
-
Mbappe embraces Ballon d'Or talk after historic World Cup exploits
-
Scorching summer pushes French wine harvest to new historic low
-
Tech firms rally, with eyes on US inflation update
-
Pietersen joins England coaching team ahead of World Cup
-
Jaguar Land Rover to cut 4,000 jobs as European car sector hits skids
-
Germany's triumphant far-right AfD aims fire at Merz
-
US average diesel price rises to record $5.90 a gallon: AAA
-
Fury claims Joshua bout is off, calls for Usyk trilogy
-
Dukascopy Bank Unveils AI-Powered Trading, 25,000+ Stock CFDs and a New Flagship E-Banking App
-
British family bids to row back against suicide taboo
-
Tech firms rally but Asian markets mixed, with eyes on US inflation
-
China's teenage 223cm basketball player 'just a little girl'
-
Nepal holds day of mourning as families pray missing still alive
-
Tokyo's Shinjuku to ban more than half of vacation rentals
Four arrested in major international anti-malware sweep
Authorities arrested four people and took down or disrupted more than 100 servers in the "largest ever" operation against botnets that deploy ransomware, Europol said Thursday.
Dubbed Operation Endgame, the sweep was initiated and led by France, Germany and the Netherlands, with a French official saying they wanted to act before this summer's Paris Olympics.
The attacks cost the victims, which were mainly companies and national institutions, hundreds of millions of euros, according to Dutch police, adding that the systems of millions of individuals were infected.
The May 27-29 operation led to one arrest in Armenia and three in Ukraine, with searches in both countries as well as in the Netherlands and Portugal, Europol said.
The servers were located in Bulgaria, Canada, Germany, Lithuania, the Netherlands, Romania, Switzerland, Britain, the United States and Ukraine.
In addition to the four arrests, eight fugitive suspects linked to the case will be added to Europe's Most Wanted list.
One of the suspects earned at least 69 million euros ($75 million) in cryptocurrency by renting out criminal infrastructure sites to disseminate ransomware, Europol said.
"This is the largest ever operation against botnets, which play a major role in the deployment of ransomware," the agency based in The Hague said.
A botnet is a network of computers infected by malware and controlled by hackers.
Authorities targeted malware "droppers" -- a type of software used to insert malicious software into a system -- named IcedID, SystemBC, Pikabot, Smokeloader, Bumblebee and Trickbot.
Trickbot was used to launch ransomware attacks on US hospitals during the Covid pandemic.
- Pre-Olympics sting -
The operation had "a global impact on the dropper ecosystem", Europol said.
Droppers allow criminals to bypass security measures and deploy viruses, ransomware or spyware, the agency said.
The malicious software is generally installed via emails with infected links or Word and PDF attachments, according to Eurojust, the European Union Agency for Criminal Justice Cooperation.
The agency said the operation was ongoing, with more arrests expected.
"We wanted to do this operation before the Olympic Games," Nicolas Guidoux, head of the French police's cybercrime unit, told AFP.
He said it was "important to weaken the attacking infrastructure" and "limit their resources" before the global event, as authorities fear that it could be targeted by numerous cyberattacks.
Endgame also involved authorities from Denmark, Britain and the United States, with additional support from Armenia, Bulgaria, Lithuania, Portugal, Romania, Switzerland and Ukraine.
- SystemBC and Pikabot -
The investigation was launched in 2022.
German cybercrime prosecutor Benjamin Krause said health, education and public administration institutions were targeted.
Hackers would encrypt files or whole systems to block access to them and then demand money to unlock them, Krause said at a news conference, adding that such attacks threatened "the existence of companies".
French investigators identified the administrator of the SystemBC dropper, which Europol said "facilitated anonymous communication between an infected system" and "command-and-control servers".
The administrator of Pikabot -- a Trojan horse allowing the deployment of ransomware, the remote takeover of computers and data theft -- was also identified by French authorities.
French police participated in the suspect's arrest and house search in Ukraine, with authorisation from local authorities, said Paris prosecutor Laure Beccuau.
Guidoux said the number of victims will be known only after the dismantled servers are analysed.
Y.Baker--AT