Russian Cyberattacks: 16 Indicted in Botnet Scheme
- Department of Justice (DOJ) has announced charges against 16 individuals allegedly connected to DanaBot, a widespread malware operation originating in Russia.
- according to the DOJ, the DanaBot malware was sold in an "affiliate" model, making it accessible to other hacker groups for a monthly fee.This allowed it to be...
- Aleksandr Stepanov and Artem Aleksandrovich Kalinkin, both residents of Novosibirsk, Russia, are among those named in the indictment.
Teh U.S. Department of Justice has charged 16 individuals with ties to DanaBot, a russian malware operation, revealing a significant breach in global cybersecurity. This sophisticated botnet, which infected at least 300,000 computers worldwide, facilitated ransomware attacks and cyber espionage, underscoring the escalating threat landscape. The DOJ’s indictment details how DanaBot was sold in an “affiliate” model, expanding its reach to target financial institutions and governmental entities across multiple countries, including the U.S. and Canada. Aleksandr Stepanov and Artem Aleksandrovich Kalinkin, among others, face charges related to this widespread scheme. The seizures of DanaBot infrastructure show the commitment to disrupting thes cybercriminal networks . news Directory 3 brings you breaking stories like these as the law enforcement agencies continue their work to safeguard against these attacks. Discover what’s next in the fight against cybercrime.
US Justice Department Targets Russian DanaBot botnet Linked to Cyber Espionage
Updated May 26,2025
The U.S. Department of Justice (DOJ) has announced charges against 16 individuals allegedly connected to DanaBot, a widespread malware operation originating in Russia. the botnet,which infected at least 300,000 computers worldwide,is accused of enabling various cybercrimes,including ransomware attacks,espionage,and cyberattacks against Ukraine.
according to the DOJ, the DanaBot malware was sold in an “affiliate” model, making it accessible to other hacker groups for a monthly fee.This allowed it to be used in a broad array of operations, including the installation of different forms of malware and ransomware. Targets expanded from Ukraine,Poland,Italy,Germany,Austria and Australia to include U.S. and Canadian financial institutions.
Aleksandr Stepanov and Artem Aleksandrovich Kalinkin, both residents of Novosibirsk, Russia, are among those named in the indictment. The DOJ also stated that the Defense criminal Investigative Service (DCIS) seized DanaBot infrastructure globally, including within the U.S.
The indictment highlights a second variant of the malware allegedly used for espionage against military, government, and NGO targets.
Pervasive malware like DanaBot harms hundreds of thousands of victims around the world, including sensitive military, diplomatic, and government entities, and causes many millions of dollars in losses.
What’s next
The investigation and prosecution of those involved in the DanaBot malware operation are ongoing, as law enforcement agencies work to disrupt similar cybercriminal networks and protect potential victims.
