Police raid malware network tied to Russia's Evil Corp hacker group
2026-06-20T08:51:55Z•cbde3a176c10ed4de72ac90f0af5a9d5898ff015c58fdbbd2536be91edaf5c30
CirclesEvil CorpGentlemen (ransomware)Mackay SugarNCSCSocGholishUKbotnetcritical infrastructurecybersecurityexport controlshuman rightsindustrial disruptionlaw enforcement takedownmalwarenation-stateprepositioningransomwaresurveillance tech
What happened
Multiple security stories: an international law-enforcement operation disrupted the SocGholish malware/botnet infrastructure tied to Russia-linked cybercrime group Evil Corp. Separately, Mackay Sugar reported operational outages after a ransomware group (claimed by a group referenced as “Gentlemen”) said it carried out an attack. Human Rights Watch obtained export-license records showing Bulgarian firm Circles sold surveillance technology to repressive regimes (2018–2023). The UK NCSC warned that nation-state actors are prepositioning in critical infrastructure and that future kinetic attacks,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- cbde3a176c10ed4de72ac90f0af5a9d5898ff015c58fdbbd2536be91edaf5c30
- Enrichment time
- 2026-06-20T08:51:55Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.