BTC $71,807
2026 Bull Run Is Building Start trading with 5% OFF all fees
Sign Up Now
BTC $71,807
Bull Run 2026 | 5% Off Fees Open your Binance account today
Sign Up

US, CrowdStrike disrupt Sality botnet in $150K crypto theft

Global takedown disrupts Sality malware, halting crypto theft via clipjacking.

  • US law enforcement and international partners disrupted the Sality botnet, a Malware network active since 2003
  • Sality operators used a clipboard-hijacking tool called EggJagger to steal cryptocurrency wallet addresses from victims
  • The malware enabled the theft of at least $150,000 in crypto, with never-spent assets peaking at $1.5 million in January 2025
  • CrowdStrike and other private sector partners assisted the takedown, cutting off criminal communication with infected machines

Federal law enforcement officials, working with Cybersecurity technology company CrowdStrike and international partners in Bulgaria, Hungary and Romania, announced action against entities behind the Sality malware that enabled the theft of $150,000 in cryptocurrency. According to the US Justice Department, the effort disrupted the Sality botnet as part of an international cyber takedown.

- Advertisement -

The Justice Department said Sality had been installing malware on compromised devices since 2003, resulting in crypto theft and cyberattacks. CrowdStrike reported that over the previous eight years, the entities behind Sality used EggJagger, a “clipjacking tool that monitors the clipboard for cryptocurrency wallet addresses and silently replaces them with addresses controlled by the operator.”

That technique allowed criminals to steal at least 12.1 million rubles, or about $150,000, in cryptocurrency. CrowdStrike noted that the value of the “never-spent” digital assets peaked at approximately $1.5 million in January 2025. “When a victim copies a Bitcoin or Ethereum address to make a payment, the funds are redirected,” the company explained.

Consequently, authorities’ efforts to disrupt the network meant the criminals behind Sality “lost the ability to communicate with infected machines.” CrowdStrike and US officials stated that about 15,000 infected computers formed part of a peer-to-peer botnet, which checked whether its systems were online every 40 minutes. Sality was used not only for crypto theft but also to power a broader network of compromised devices.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

- Advertisement -

Previous Articles:

- Advertisement -
Ad
Altseason Is Loading. Don't watch from the sidelines.
SOL $90.51
DOGE $0.0963
LINK $9.02
SUI $1.00
5% off fees when you sign up
Start Trading
Ad
Pay Less on Every Trade. For Life.
$10K/mo volume Save $60/yr
$50K/mo volume Save $300/yr
$100K/mo volume Save $600/yr
5% off all trading fees when you sign up
Claim Your Discount

Latest News

UN Security Council to Hear AI CEOs on Risks Before Trump-Xi Meet

Anthropic, OpenAI, DeepSeek, and Moonshot will brief the UN Security Council on AI risks...

OpenAI launches cheaper GPT-6 Sol and Luna for coding and work tasks

OpenAI launched GPT-6 Sol at $2 per million input tokens and $10 per million...

Kalshi bot stops uniform trades amid wash trade claims

A trading bot repeatedly buying and selling $1 contracts on Kalshi's Zohran Mamdani prediction...

Six Canadian banks explore tokenized CAD deposits

Canada’s six largest banks jointly explore tokenized Canadian dollar deposits to enable digital bank...

Critical AI Gateway Bug Allows Unauthenticated RCE

A critical unauthenticated remote code execution vulnerability (CVE-2026-90898, CVSS 9.8) affects all versions of...

Must Read

Best Crypto Audiobooks of 2026: The Ultimate Listen & Learn Guide

You can't read Bitcoin charts while driving 70 mph on the highway. You can't study Ethereum whitepapers during your morning run. But you can...
Ad
Altseason Is Loading. These 4 coins are trending right now.
SOL $92.12
DOGE $0.0950
LINK $9.02
SUI $1.02
5% off spot fees when you sign up
Start Trading