Three ‘cybercrime as a service’ operations undercut by Microsoft, law enforcement
2026-06-25T02:51:57Z•6e0f4ec6ac2ffe61095f3c7fa1175fcc63d31047cdc8639b27b2ce5d921c82d6
2GAI-threatAmadeyBajaj-AutoDOJDeutsche-BahnEuropolFive-EyesGSM-RHuioneMicrosoftSocGholishStealccloud-seizurecybercrime-as-a-serviceincident-responselaw-enforcementrail-outageransomwarescamssoutheast-asiasupply-chaintakedown
What happened
Multiple high-impact operations and incidents were reported: Microsoft, Europol and partners disrupted three “cybercrime-as-a-service” operations (Stealc, Amadey, SocGholish), targeting more than 300 servers as part of a supply-chain-focused takedown. The U.S. Department of Justice seized a cloud account used by subsidiaries of the Huione Group tied to alleged cyber-scams. Separately, Deutsche Bahn experienced a nationwide service disruption caused by a malfunction in its GSM‑R (2G) communications system. Indian automaker Bajaj Auto disclosed a ransomware incident and containment measures. The
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- 6e0f4ec6ac2ffe61095f3c7fa1175fcc63d31047cdc8639b27b2ce5d921c82d6
- Enrichment time
- 2026-06-25T02:51:57Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.