,

INTERPOL Takedown Targets Over 20,000 Malicious Cybercrime Assets

A global cybercrime crackdown led by INTERPOL has resulted in the takedown of more than 20,000 malicious IP addresses and domains linked to infostealer malware, following a coordinated international operation named Operation Secure.

June 12, 2025

Bisma Farrukh

Operation Secure, which ran from January to April 2025, brought together law enforcement agencies from 26 countries to dismantle cybercriminal infrastructure. Investigators identified and located malicious servers, mapped digital networks, and executed precise takedowns.

Ahead of the operation, INTERPOL worked with cybersecurity firms Group-IB, Kaspersky, and Trend Micro to compile Cyber Activity Reports. These reports provided key intelligence that helped cyber teams locate and target high-risk infrastructure across Asia. As a result, 79% of flagged IP addresses were successfully taken offline.

  • 41 servers seized
  • 32 arrests made
  • Over 100 GB of stolen data recovered.
  • 216,000+ victims and potential victims notified

Infostealer Threat Explained

Infostealer malware is a standard cybercriminal tool that extracts sensitive data from infected systems, such as passwords, browser credentials, credit card information, and cryptocurrency wallets. These data logs are often sold on underground markets and serve as an entry point for further attacks, including ransomware, data breaches, and financial fraud like Business Email Compromise (BEC).

Country-Specific Highlights:

  • Vietnam: Authorities arrested 18 suspects, seizing electronic devices, SIM cards, and over VND 300 million (approx. USD 11,500) in cash. The leader was allegedly involved in setting up and selling corporate accounts.
  • Sri Lanka and Nauru: Raids led to the arrest of 14 individuals and the identification of 40 victims.
  • Hong Kong: Police analyzed 1,700+ intelligence leads, uncovering 117 command-and-control servers hosted across 89 ISPs, used in phishing and social media scams.

INTERPOL’s Statement

“Operation Secure has once again shown the power of intelligence sharing in disrupting malicious infrastructure and preventing large-scale harm to both individuals and businesses,” said Neal Jetton, INTERPOL’s Director of Cybercrime.

This operation marks another significant milestone in global efforts to combat cybercrime by taking down infrastructure at its source and protecting victims worldwide.

Leave a Comment