As cited
Copy frozen at (site build).
threat intel
Risky Bulletin: IcedID malware developer fakes his own death to escape the FBI
A Ukrainian developer of the IcedID malware botnet faked his own death in April 2024 by bribing local police to issue fraudulent death documents, allegedly to evade FBI prosecution. The incident occurred one month before law enforcement agencies, including Europol and the FBI, conducted Operation Endgame to seize IcedID infrastructure, raising questions about whether the suspect had advance warning of the investigation.
Why it matters: Organizations running legacy systems or those infected with IcedID should assume the botnet infrastructure remains at risk or may operate under new operators; security teams need to verify whether they were exposed to this malware and implement detection rules for IcedID variants.
- Source published
- First seen by Cybersecurity Tracker