< Back to all clusters
[TECHNOLOGY] · Germany, United States, Netherlands, Denmark, United Kingdom · 18 sources

started · updated

Operation Endgame crackdown disrupts major malware as Europe and US boost cyber defenses

In a coordinated international operation dubbed “Operation Endgame,” law‑enforcement agencies from Germany, the United States, the Netherlands, Denmark, the United Kingdom and Canada dismantled the infrastructure of the notorious malware families Amadey and StealC. Over 200 command‑and‑control servers were taken offline and control of more than 18,000 infected computers worldwide was severed, protecting hundreds of thousands of users. The effort was led by the German BKA and Europol, with technical support from Microsoft and the use of artificial‑intelligence analysis and the U.S. RICO statute.

At the same time, cybersecurity vendor Censys launched its Enrichment API, allowing organisations to enrich alerts with real‑time internet‑infrastructure data, strengthening threat‑hunting and incident‑response workflows.

Germany continues to experience a sharp rise in ransomware attacks, with the Federal Office for Information Security noting that the country is the EU hotspot and that many campaigns trace back to Russian actors. Ransom demands average six‑figure euros and prolonged outages threaten businesses and public services.

The German BSI warned that artificial‑intelligence tools now automate vulnerability discovery and exploit generation, accelerating attack cycles. In response, many enterprises are expanding phishing‑simulation programmes and upgrading endpoint protection, including newly tested Windows 11 security suites.

Overall, the combination of a large‑scale takedown, new intelligence‑sharing tools and heightened awareness of AI‑driven threats marks a significant shift in Europe’s cyber‑defence posture.

Sources

3 months ago
3 months ago