Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
FBI and Indonesian Police Dismantle Global Phishing Network

FBI and Indonesian Police Dismantle Global Phishing Network

Posted on April 14, 2026 By CWS

The FBI’s Atlanta Field Office has partnered with Indonesian law enforcement to successfully dismantle a significant global phishing operation. This unprecedented collaboration focused on the notorious W3LL phishing kit, a toolset notorious for its capability to bypass multi-factor authentication and facilitate financial fraud attempts totaling over $20 million.

Breaking New Ground in Cybercrime Prevention

This case marks the first concerted effort between the United States and Indonesia targeting a phishing kit developer. The W3LL phishing kit functioned as a cybercrime-as-a-service platform, making sophisticated hacking techniques accessible to even novice cybercriminals. For approximately $500, buyers could deploy convincing fake websites mimicking trusted corporate login portals, with the kit’s most dangerous feature being its ability to circumvent modern security measures.

Once victims entered their credentials on these fraudulent sites, the toolkit went beyond harvesting basic information by capturing session cookies and authentication tokens. This allowed attackers to bypass multi-factor authentication seamlessly, maintaining unauthorized access without triggering security alerts.

The Impact and Reach of W3LLSTORE

The W3LL operation was bolstered by an online marketplace known as W3LLSTORE, a dark web hub offering stolen credentials, unauthorized corporate system access, and remote desktop connections. The marketplace’s influence was significant across the cyber threat landscape globally. Between 2019 and 2023, over 25,000 compromised accounts were sold through this platform.

From 2023 to 2024, the rebranded phishing kit targeted more than 17,000 victims worldwide, enabling over $20 million in fraudulent attempts. The developer of the kit clandestinely collected and resold access to these compromised accounts, effectively profiting twice from the stolen data.

Arrests and Seizures Mark a Major Victory

Although W3LLSTORE shut down in 2023, its operations persisted on encrypted messaging forums. Investigators diligently tracked the rebranded network, ultimately tracing it back to key individuals. With crucial support from the U.S. Attorney’s Office for the Northern District of Georgia, the FBI managed to identify and seize the core infrastructure that facilitated these phishing activities.

During a coordinated operation, the Indonesian National Police apprehended the alleged developer, identified as G.L., while seizing vital domains linked to the network. Marlo Graham, Special Agent in Charge at the FBI Atlanta office, described the operation as a comprehensive cybercrime platform rather than a mere phishing tool. By dismantling this infrastructure, authorities have significantly disrupted a critical resource for cybercriminals seeking to infiltrate corporate networks.

Stay informed with our updates on Google News, LinkedIn, and X. Reach out to us to feature your cybersecurity stories.

Cyber Security News Tags:credential theft, Cybercrime, Cybersecurity, dark web, FBI, global operation, law enforcement, MFA bypass, Phishing, W3LL phishing kit

Post navigation

Previous Post: Triad Nexus Maneuvers Around Sanctions to Sustain Cybercrime
Next Post: Mirax Android RAT Exploits Devices as Proxies via Meta Ads

Related Posts

Guardian AI Revolutionizes Penetration Testing with GPT-4 Guardian AI Revolutionizes Penetration Testing with GPT-4 Cyber Security News
Six New Microsoft Vulnerabilities Added to CISA’s KEV List Six New Microsoft Vulnerabilities Added to CISA’s KEV List Cyber Security News
LANSCOPE Endpoint Manager Vulnerability Let Attackers Execute Remote Code LANSCOPE Endpoint Manager Vulnerability Let Attackers Execute Remote Code Cyber Security News
Wendy’s Franchise Database Allegedly Compromised Wendy’s Franchise Database Allegedly Compromised Cyber Security News
TA446 Hackers Unleash DarkSword Kit on iOS Devices TA446 Hackers Unleash DarkSword Kit on iOS Devices Cyber Security News
New EtherHiding Attack Uses Web-Based Attacks to Deliver Malware and Rotate Payloads New EtherHiding Attack Uses Web-Based Attacks to Deliver Malware and Rotate Payloads Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Google Enhances Pixel Security with Rust DNS Parser
  • Google Integrates Rust DNS Parser in Pixel 10 for Security
  • CISA Urges Action on Fortinet SQL Injection Flaw
  • Data Breach Affects 1 Million Members at Europe’s Top Gym
  • PlugX USB Worm Exploits DLL Sideloading Globally

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Google Enhances Pixel Security with Rust DNS Parser
  • Google Integrates Rust DNS Parser in Pixel 10 for Security
  • CISA Urges Action on Fortinet SQL Injection Flaw
  • Data Breach Affects 1 Million Members at Europe’s Top Gym
  • PlugX USB Worm Exploits DLL Sideloading Globally

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark