US Dismantled Sophisticated Warzone RAT, Key Operators Arrested

Federal authorities have dismantled a major malware operation, seizing online marketplaces and being involved in its sale and support. 

This international effort targeted a service known as “Warzone RAT,” a powerful tool cybercriminals use to remotely access and steal data from victims’ computers.

Federal authorities in Boston shut down websites used to sell the malware, effectively disrupting their operations.

Indictments were unsealed against individuals in Malta and Nigeria accused of selling the malware and aiding cybercriminals.

Document
Live Account Takeover Attack Simulation

How do Hackers Bypass 2FA?

Live attack simulation Webinar demonstrates various ways in which account takeover can happen and practices to protect your websites and APIs against ATO attacks .

The Accusations

In a joint effort, the Malta Police Force and the Office of the Attorney General of Malta orchestrated a coordinated operation resulting in the arrest of Daniel Meli, 27, from Zabbar, Malta, on February 7. 

The charges include causing unauthorized damage to protected computers, illegally selling and advertising an electronic interception device, and involvement in a conspiracy to commit various computer intrusion offenses.

Nigerian citizen Prince Onyeoziri Odinakachi, 31, faced indictment for computer intrusion, including gaining authorized access and causing unauthorized damage to protected.

Documents indicate that Odinakachi offered online customer support to users of the Warzone RAT malware.

“Daniel Meli will no longer escape accountability for his actions selling malware,” said U.S. Attorney Ryan K. Buchanan for the Northern District of Georgia. 

“This action highlights the FBI’s commitment to disrupting cybercriminal actors and taking down their infrastructure,” said Assistant Director Brian Vorndran of the FBI’s Cyber Division. 

The U.S. The Justice Department’s Office of International Affairs applauds the vital support of a multinational coalition in dismantling the Warzone RAT infrastructure. 

This collective effort involved the FBI (Boston & Atlanta) and authorities in Malta, Australia, Croatia, Netherlands, Finland, Germany, Japan, Nigeria, Romania, and Canada. 

Individuals impacted by a Warzone RAT compromise are strongly encouraged to file a report with the FBI.

Stay updated on Cybersecurity news, Whitepapers, and Infographics. Follow us on LinkedIn & Twitter.

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a disguised…

20 hours ago

New ‘OtterCookie’ Malware Attacking Software Developers Via Fake Job Offers

Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated attack…

20 hours ago

NjRat 2.3D Pro Edition Shared on GitHub: A Growing Cybersecurity Concern

The recent discovery of the NjRat 2.3D Professional Edition on GitHub has raised alarms in…

20 hours ago

Palo Alto Networks Vulnerability Puts Firewalls at Risk of DoS Attacks

A critical vulnerability, CVE-2024-3393, has been identified in the DNS Security feature of Palo Alto…

20 hours ago

Araneida Scanner – Hackers Using Cracked Version Of Acunetix Vulnerability Scanner

Threat Analysts have reported alarming findings about the "Araneida Scanner," a malicious tool allegedly based…

2 days ago

A Dark Web Operation Acquiring KYC Details TO Bypass Identity Verification Systems

A major dark web operation dedicated to circumventing KYC (Know Your Customer) procedures, which involves…

2 days ago