CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

One-two punch delivered in global operation disrupts cybercrime "assembly line"

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 426

As cited

Copy frozen at (site build).

ransomware

One-two punch delivered in global operation disrupts cybercrime "assembly line"

International authorities and technology companies disrupted two major cybercrime tools, Amadey and StealC, which operated as malware and infostealer services. The operation targeted shared infrastructure used by both platforms, which together facilitated theft of millions of login credentials and over $47 million in fraudulent payments. The simultaneous takedown exploited the discovery that many cybercriminals used both tools in tandem.

Why it matters: Organizations and individuals targeted by Amadey and StealC should assess whether credentials or systems were compromised and change passwords or review account activity, as the disruption may create a detection window before attackers migrate to alternative tools.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

One-two punch delivered in global operation disrupts cybercrime "assembly line"

International authorities and technology companies disrupted two major cybercrime tools, Amadey and StealC, which operated as malware and infostealer services. The operation targeted shared infrastructure used by both platforms, which together facilitated theft of millions of login credentials and over $47 million in fraudulent payments. The simultaneous takedown exploited the discovery that many cybercriminals used both tools in tandem.

Why it matters: Organizations and individuals targeted by Amadey and StealC should assess whether credentials or systems were compromised and change passwords or review account activity, as the disruption may create a detection window before attackers migrate to alternative tools.

VendorsMicrosoftGitHub
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary