[Síguenos ahora también en WhatsApp. Da clic aquí]
A international operation in which Dutch National Police and other security agencies around the world, dismantled more 1200 servers from “infovor” RedLine And TARGETwhich targeted millions of victims around the world.
He ‘infostealer‘this is one of the types’malware‘ the most popular and dangerous because once you gain access and steal information confidentiality of the victim’s device, sends it to the control server and places it on sale on the dark web.
In addition, they tend to spread via scam emails (a technique known as “phishing”) through social engineering attacks or through the use of a Trojan, a virus that is inserted into apparently legitimate “software.”
The two most famous options: RedLine -active since 2020, according to Specops- and TARGETwhich would be used to access the data of millions of users and large corporations for steal confidential informationsuch as passwords, search history and crypto wallet contents.
They would also allow cybercriminals bypass multi-factor authentication (MFA, an English acronym) by stealing authentication cookies and other information from hacked computers and systems, as explained by the US Attorney’s Office for the Western District of Texas.
RedLine And TARGET HE Do you sell through a decentralized Malware-as-a-Service (MaaS) model in which cybercriminals purchase a license to use them and then develop their own campaigns distributed through email and fraudulent side-downloads of the “software.”
This Monday, an international coalition led by the Dutch National Police achieved tipping operations both’data stealers‘ as part of the so-called Operation Magnus, carried out by the Joint Cybercrime Task Force (JCAT) and with the support of Europol.
Here operation was involved the Public Prosecutor’s Office, the Dutch National Police and Cybercrime Unit of Limburg (Dutch Province), the Public Prosecutor’s Office and the General Police of Belgium, the Judicial Police of Portugal, the Federal Police of Australia and Belgium; and several U.S. agencies, including the Naval Criminal Investigative Service, the Army Criminal Investigation Division, and the Federal Bureau of Investigation (FBI).
This dismantling became possible after victims will be notified about these attacks, and the cybersecurity company will alert about the possible existence of servers associated with RedLine and META located in the Netherlands. Thus, they discovered that there were over 1,200 servers using them around the world.
European Union Agency for Criminal Justice Cooperation (EuroJust), which also coordinated the operationserved as a platform between the various participating countries to exchange information aimed at destroying the systems of these “malware” variants.
This organization indicated that three of servers those involved in this activity were dismantled in the Netherlands, where they were also Two domains confiscated; and Belgian authorities dismantled several RedLine and META communication channels.