Police raid malware network tied to Russia's Evil Corp hacker group

2026-06-20T08:51:55Zcbde3a176c10ed4de72ac90f0af5a9d5898ff015c58fdbbd2536be91edaf5c30
CirclesEvil CorpGentlemen (ransomware)Mackay SugarNCSCSocGholishUKbotnetcritical infrastructurecybersecurityexport controlshuman rightsindustrial disruptionlaw enforcement takedownmalwarenation-stateprepositioningransomwaresurveillance tech

What happened

Multiple security stories: an international law-enforcement operation disrupted the SocGholish malware/botnet infrastructure tied to Russia-linked cybercrime group Evil Corp. Separately, Mackay Sugar reported operational outages after a ransomware group (claimed by a group referenced as “Gentlemen”) said it carried out an attack. Human Rights Watch obtained export-license records showing Bulgarian firm Circles sold surveillance technology to repressive regimes (2018–2023). The UK NCSC warned that nation-state actors are prepositioning in critical infrastructure and that future kinetic attacks,

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
therecord_media
Record identifier
cbde3a176c10ed4de72ac90f0af5a9d5898ff015c58fdbbd2536be91edaf5c30
Enrichment time
2026-06-20T08:51:55Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Police raid malware network tied to Russia's Evil Corp hacker group · Baitaphish