CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Risky Bulletin: Law enforcement agencies and security firms take down Amadey and StealerC

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 167

As cited

Copy frozen at (site build).

threat intel

Risky Bulletin: Law enforcement agencies and security firms take down Amadey and StealerC

Law enforcement agencies from seven countries and six security firms coordinated to dismantle the Amadey malware loader and StealC infostealer operations, resulting in the takedown of 326 servers, 142 domains, and the seizure of over $47 million in illegal cryptocurrency proceeds. The operation involved Europol, agencies from Canada, Denmark, Germany, the Netherlands, the UK, and the US, alongside Microsoft, Bitsight, ESET, IBM, Proofpoint, MBSD, and Pillsbury.

Why it matters: Organizations using compromised credentials or infected systems may have been victims of Amadey or StealC; practitioners should verify whether their environments were targeted and update detection rules now that infrastructure has been disrupted.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Risky Bulletin: Law enforcement agencies and security firms take down Amadey and StealerC

Law enforcement agencies from seven countries and six security firms coordinated to dismantle the Amadey malware loader and StealC infostealer operations, resulting in the takedown of 326 servers, 142 domains, and the seizure of over $47 million in illegal cryptocurrency proceeds. The operation involved Europol, agencies from Canada, Denmark, Germany, the Netherlands, the UK, and the US, alongside Microsoft, Bitsight, ESET, IBM, Proofpoint, MBSD, and Pillsbury.

Why it matters: Organizations using compromised credentials or infected systems may have been victims of Amadey or StealC; practitioners should verify whether their environments were targeted and update detection rules now that infrastructure has been disrupted.

VendorsMicrosoft
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary