Cyber Security News

Authorities Arrested Hacker Who Compromised 40+ Organizations

Spanish authorities have arrested a hacker believed to be responsible for cyberattacks targeting over 40 public and private organizations globally.

The suspect, apprehended on Tuesday in Calpe (Alicante), allegedly compromised sensitive data and disrupted critical services, including government agencies, international institutions, and private corporations.

The operation was a collaborative effort between the Policía Nacional and the Guardia Civil, with support from Europol, Homeland Security Investigations (HSI) of the United States, and Spain’s National Intelligence Center (CNI).

The detained individual faces charges of unauthorized access to systems, data breaches, computer sabotage, and money laundering.

Multinational Targets and Sophisticated Techniques

The hacker allegedly targeted high-profile entities such as Spain’s Ministry of Defense, the National Mint and Stamp Factory, the Ministry of Education, NATO, U.S. Army databases, and United Nations systems.

Spanish universities, the Generalitat Valenciana, and private enterprises were also victimized. Using pseudonyms on dark web forums, the suspect claimed responsibility for the attacks, often publicizing or selling stolen information.

Authorities revealed that the hacker demonstrated advanced technical expertise, utilizing anonymous messaging apps, encrypted browsing networks, and false identities to avoid detection.

Notably, their tactics included exploiting vulnerabilities to access databases containing sensitive employee and client information and deploying defacements to publicly humiliate victims.

Cryptocurrency Accounts Seized

During a search of the suspect’s residence, investigators confiscated multiple devices and discovered over 50 cryptocurrency accounts holding a variety of assets.

Specialists are analyzing the seized materials, with law enforcement suggesting that further criminal activities could be uncovered.

The suspect’s knowledge of blockchain technology enabled the laundering of proceeds from illicit activities, making efforts to track funds particularly challenging.

The investigation began in February 2024 after a Madrid-based business association reported stolen data posted on a dark web forum.

Further probes connected the suspect to several high-profile breaches, culminating in an attack on Spain’s Guardia Civil and Ministry of Defense databases in December 2024.

The breach prompted intensified efforts by the Guardia Civil’s Central Operational Unit, which ultimately identified and located the hacker.

This arrest highlights the importance of cross-border cooperation in combating cybercrime. The joint work of Spanish law enforcement with international partners like Europol and HSI was integral to the operation’s success.

As the investigation continues, officials emphasize the ongoing need for robust cybersecurity measures to safeguard critical infrastructure.

Investigate Real-World Malicious Links & Phishing Attacks With Threat Intelligence Lookup - Try for Free

Divya

Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Recent Posts

10 Best Penetration Testing Companies in 2025

Penetration testing companies play a vital role in strengthening the cybersecurity defenses of organizations by…

7 hours ago

Lumma Stealer Using Fake Google Meet & Windows Update Sites to Launch “Click Fix” Style Attack

Cybersecurity researchers continue to track sophisticated "Click Fix" style distribution campaigns that deliver the notorious…

11 hours ago

Fake BianLian Ransom Demands Sent via Physical Letters to U.S. Firms

In a novel and concerning development, multiple U.S. organizations have reported receiving suspicious physical letters…

24 hours ago

Strela Stealer Malware Attack Microsoft Outlook Users for Credential Theft

The cybersecurity landscape has recently been impacted by the emergence of the Strela Stealer malware,…

1 day ago

New PyPI Malware Targets Developers to Steal Ethereum Wallets

A recent discovery by the Socket Research Team has unveiled a malicious PyPI package named…

1 day ago

Threat Actors Exploit PHP-CGI RCE Vulnerability to Attack Windows Machines

A recent cybersecurity threat has emerged where unknown attackers are exploiting a critical remote code…

1 day ago