Skip to content
Darknetone – Best Darknet source
Close Button
  • Home
  • News & Articles
  • Q&A
  • Contact US

Russian Police Bust Suspected Meduza Infostealer Developers

1 November, 2025 darknetone 0 Comments 1 category

3 ‘Young IT Specialists’ Arrested After Malware Tied to Government Agency Infection

Russian police arrested “three young IT specialists” suspected of developing and selling the Meduza credential-harvesting malware.

Authorities from the Ministry of Internal Affairs of Russia, together with police investigators, charged the men with developing and supplying the information-stealing malware, and tied it to an attack that breached and stole data from a government institution in the country’s southern Astrakhan region in May, said a ministry spokeswoman in a Russian-language post to Telegram(https://t.me/IrinaVolk_MVD/5661).

Police arrested all of the suspects in or around Moscow and seized computing equipment, communication devices and payment cards. Authorities didn’t specify the suspects’ identities or dates of arrest, or under what terms they may have been bailed. They accused the men of gaining unauthorized access to data of “one of the institutions in the Astrakhan region,” referring to a Russian province bordering the Caspian Sea.

Not to be confused with Medusa ransomware, the Meduza infostealer first appeared in mid-2023 and has been sold across Telegram channels and cybercrime forums.

Meduza password stealer supported Windows Server 2012/2016/2019/2022 and Windows 10/11. The author demonstrated successful work on all editions and what other Dark Web actors called “stable and ideal”.

The stealer allowed users to grab data from popular software applications, including but not limited to support of:

  • 106 browsers
  • 107 cryptocurrency wallets
  • any file extension via FileGrabber (module)
  • Telegram IM
  • Steam
  • Discord
  • 27 password managers
  • OpenVPN
  • Outlook (e-mail client)
  • Google Tokens

Its popularity among cybercriminals and ties to the wider cybercrime-as-a-service ecosystem has been well documented. When the U.S. Department of Justice in July sanctioned Aeza Group, a bulletproof hosting service, it said the Meduza, Lumma and RedLine infostealers all used it.

Investigators “established that about two years ago the attackers developed and began distributing software called ‘Meduza’ through hacker forums,” the ministry spokeswoman said. “It is designed to steal account credentials, information about crypto wallets and other computer data.”

Priced from $199 for a one-month subscription to $1,199 for lifetime access, Meduza “positions itself as a superior alternative to established stealers like Redline, Raccoon and Vidar” and “boasts a user-friendly GUI for attackers, allowing easy customization and log management,” said cybercrime intelligence firm Hudson Rock(https://www.infostealers.com/article/russian-authorities-bust-meduza-infostealer-developers-young-hackers-detained-in-major-cybercrime-crackdown/).

Criminal use of infostealers continues to surge, collectively accounting for 5.8 million host and device infections, and nearly 2 billion stolen credentials, harvested just in the first half of this year, said threat intelligence firm Flashpoint.

These stolen credentials are batched into a single infostealer log for each infected system. Such files circulate on illicit marketplaces and Telegram channels and “have transformed such attacks into a pathway for gaining corporate network access and launching subsequent operations,” Ian Gray, Flashpoint’s vice president of intelligence, told Information Security Media Group.

Russian Rules

Whether these arrests are part of a wider crackdown isn’t yet clear. “This isn’t the first time Russian authorities have targeted homegrown cyber threats, but the focus on an infostealer like Meduza, often sold as a subscription service on dark web forums, suggests a broader effort to curb tools that fuel global data breaches,” Hudson Rock said.

But apparent Russian crackdowns on cybercriminals are frequently “less about enforcement and more about optics,” said Alexander Leslie, a senior adviser at Recorded Future, in a LinkedIn post.

Russians accused of any type of domestic cybercrime typically face markedly less severe penalties compared to many other countries. Some exceptions apply, including for anyone accused of facilitating the trafficking in illegal drugs, who risk being sent to one of the country’s harsh penal colonies

source: https://www.databreachtoday.com/russian-police-bust-suspected-meduza-infostealer-developers-a-29901

Tags: .onion.onion sites black web blackweb comment aller sur le dark web como acessar a deep web como entrar a la deep web como entrar na deep web dark browser dark market dark net dark web access dark web browser dark web dark web dark web directory dark web dmd dark web links dark web login dark web login sites dark web market dark web meaning dark web search dark web search engine dark web site dark web sites dark web sites list dark web video sites dark web videos dark web videos site dark web website dark web websites dark web.com dark website dark websites dark.web darkcategories darknet darknet browser darknet link darknet market darknet öffnen darknet web darknet.com darkweb market darkweb online search darkweb suchmaschinen darkweb website shop darkweb.com darweb deb web deep hot link website deep web deep web access deep web dmd deep web entrar deep web links deep web login deep web market deep web nest deep web página oficial deep web sites deep weep deepnet deepweb demonzapora site depweb dib web dmd deep web drughub darkweb drughub-dark drughub darkweb link drughub-dark drughub darkweb market drughub-dark hidden wiki how do you access the dark web how to access dark web how to access the dark web how to access the deep web how to access the deep web cómo entrar a la deep web how to enter dark web how to enter the dark web how to get on dark web how to get on the dark web how to get to the dark web illegal websites illegal websites list is the dark web illegal la deep web mercado negro pagina mercado negro web mgm grand darkweb mgm grand darkweb link mgm grand darkweb link mgm-grand-dark mgm grand darkweb link mgm-grand-dark.net mgm grand darkweb market mgm grand darkweb market mgm-grand-dark mgm grand darkweb url mgm grand darkweb url mgm-grand-dark norsefire xyz onion browser onion browser dark web onion links onion sites list onion web onion website pagina negra que es la dark web secret websites the black web the dark web the dark web website the dark website the hidden wiki the hidden wiki – dark web links deep web tor browser tor browser dark web tor browser dark web sites tor browser download tor dark web tor links tor websites Uncategorized web oscura what is dark web what is the dark web what is the dark web meaning wie komme ich ins darknet wie kommt man ins darknet www.darkweb.com www.darkweb.com login الدارك ويب دارك ويب دارك ويب رابط ديب ويب ダークウェブ ダークウェブ アクセス方法 ダークウェブとは 什么是暗网 暗网 暗网tv 暗网入口 暗网是什么 暗网禁区 暗网资源 다크웹
Category: Uncategorized

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Post navigation

Previous: Interview with the Admin of Prozone Autoshop
Next: Worker for Fentanyl pill Vendor SouthSideOxy/JefeDeMichoacan jailed

Related Posts

Crime Pays: Global Ledger reports Five Russian Markets cleared nearly $2 Billion in 2025

Crime Pays: Global Ledger reports Five Russian Markets cleared nearly $2 Billion in 2025

Blockchain intelligence firm Global Ledger looked at transaction activity from…

Read More
How a Singaporean man allegedly stole US $230 million in cryptocurrency and what he spent it on

How a Singaporean man allegedly stole US $230 million in cryptocurrency and what he spent it on

The US authorities say 22 of Lam’s vehicles have yet…

Read More
Shortly after being seized Veriftools has relaunched under a new domain.

Shortly after being seized Veriftools has relaunched under a new domain.

Authorities from the Netherlands and the USA had announced the…

Read More

Recent Posts

  • Dutch Prosecutors Demand a 3 year sentence against English Man for his role in Bohemia Market
  • How to translate over tor without Javascript: SimplyTranslate
  • Europol arrests 193 people in Crackdown on Violence As A Service (VAAS) networks
  • Crime Pays: Global Ledger reports Five Russian Markets cleared nearly $2 Billion in 2025
  • Omerta Market among three markets with server IPs leaked

Recent Comments

  1. Mr WordPress on Hello world!

Top Markets

  • Abacus Market
  • Dark Matter Market
  • TorZon Market

Markets

  • Nexus Market
  • Nemesis Market
  • Cypher Market
  • Revolution Market
  • Catharsis Market
  • Ares Market
  • WeTheNorth Market
  • Kerberos Market
  • Cocorico Market
  • Black Pyramid Market
  • M00nkey Market
  • Black Ops Market

Vendorshops

  • Europecartel
  • Calistrains
  • Merckgrade
  • Los Urabenos
  • Ozconnecton
  • Bulkbrigade
  • Cocaineinc
  • Smokersco
  • Narcoticsworldwide

Indexes

  • DarkFail
  • DarknetLive
  • DarknetLive
  • TorTaxi
  • Tor market
  • Darknetdaily

Exchanges

  • FixedFloat
  • Infinity Exchanger

Archives

  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • October 2023
  • July 2023
  • May 2016

Meta

  • Log in

Categories

  • Darknet News
  • Darknet News
  • Home
  • News & Articles
  • Uncategorized
  • Vendor Shops
  • Videos

Newspaper Magazine Blog Theme By Themespride