Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp

International law enforcement agencies cleaned nearly 15,000 malware-infected WordPress websites and took down more than 100 servers linked to the SocGholish botnet and the Evil Corp Russian cybercrime group. [...]
The coordinated international law enforcement action against SocGholish and Evil Corp highlights ongoing efforts to combat sophisticated cybercrime, a persistent and evolving threat.
This action demonstrates the increasing effectiveness of international cooperation in disrupting major cybercriminal operations, affecting the economics of cybercrime and the security of digital infrastructure.
The disruption of nearly 15,000 infected websites and over 100 servers significantly degrades the operational capacity of a major cybercriminal group, momentarily reducing their attack surface and revenue generation.
- · International law enforcement
- · Website owners (WordPress)
- · Cybersecurity firms
- · Evil Corp
- · SocGholish botnet operators
- · Cybercriminals
The immediate impact is a reduction in WordPress-based malware infections and a temporary decrease in Evil Corp's illicit activities.
This disruption may force cybercriminal groups to invest more in stealth and resilience, potentially leading to new attack methodologies or infrastructure diversification.
It could encourage greater public-private collaboration in threat intelligence and response, improving overall digital security posture against persistent adversaries.
This signal links to a primary source. Continuum Brief monitors and indexes it as part of the live intelligence stream — we do not republish source content.
Read at BleepingComputer