Global team corners Chinese hacker allegedly running ‘likely world’s largest ever’ cybercrime botnet

Still image from a US Department of Justice video showing US Attorney General Merrick Garland announcing the arrest of Yunhe Wang and disruption of the “911 S5” botnet that officials said the Chinese cybercriminal ran for nearly a decade. (YouTube/US DOJ )
Short Url
Updated 30 May 2024
Follow

Global team corners Chinese hacker allegedly running ‘likely world’s largest ever’ cybercrime botnet

  • Yunhe Wang was arrested on May 24 in Singapore, and authorities also seized $29 million in cryptocurrency: FBI
  • Wang is accused of selling access to the 19 million Windows computers he hijacked to criminals

WASHINGTON: An international law enforcement team has arrested a Chinese national and disrupted a major botnet that officials said he ran for nearly a decade, amassing at least $99 million in profits by reselling access to criminals who used it for identity theft, child exploitation, and financial fraud, including pandemic relief scams.

The US Department of Justice quoted FBI Director Christopher Wray as saying Wednesday that the “911 S5” botnet — a network of malware-infected computers in nearly 200 countries — was likely the world’s largest.
Justice said in a news release that Yunhe Wang, 35, was arrested May 24. Wang was arrested in Singapore, and search warrants were executed there and in Thailand, the FBI’s deputy assistant director for cyber operations, Brett Leatherman, said in a LinkedIn post. Authorities also seized $29 million in cryptocurrency, Leatherman said.
Cybercriminals used Wang’s network of zombie residential computers to steal “billions of dollars from financial institutions, credit card issuers and accountholders, and federal lending programs since 2014,” according to an indictment filed in Texas’ eastern district.

 

The administrator, Wang, sold access to the 19 million Windows computers he hijacked — more than 613,000 in the United States — to criminals who “used that access to commit a staggering array of crimes that victimized children, threatened people’s safety and defrauded financial institutions and federal lending programs,” US Attorney General Merrick Garland said in announcing the takedown.
He said criminals who purchased access to the zombie network from Wang were responsible for more than $5.9 billion in estimated losses due to fraud against relief programs. Officials estimated 560,000 fraudulent unemployment insurance claims originated from compromised IP addresses.
Wang allegedly managed the botnet through 150 dedicated servers, half of them leased from US-based online service providers.
The indictment says Wang used his illicit gains to purchase 21 properties in the United States, China, Singapore, Thailand, the United Arab Emirates and St. Kitts and Nevis, where it said he obtained citizenship through investment.
In its news release, the Justice Department thanked police and other authorities in Singapore and Thailand for their assistance.

 

 


China says Philippines distorted facts about incident near disputed atoll

Updated 2 sec ago
Follow

China says Philippines distorted facts about incident near disputed atoll

BEIJING: China’s defense ministry accused the Philippines on Wednesday of distorting the facts about an incident involving the Chinese coast guard and Filipino fishermen near a South China Sea shoal, a charge Manila strongly rejected.
The Philippine coast guard said over the weekend that three Filipino fishermen were injured and two fishing vessels damaged when Chinese coast guard ships cut their anchor lines and fired water cannon near the Sabina Shoal on Friday, actions the Philippine defense secretary denounced as “dangerous” and “inhumane.”
The Chinese ministry defended its coast guard’s actions as “reasonable, lawful, professional and restrained,” and vowed to “take strong and effective measures” in response to “all acts of infringement and provocation,” according to a statement released on its social media account.
“The Philippine side amassed a large number of ships in an organized and premeditated manner to illegally intrude” into the atoll’s lagoon, the ministry said. “Philippine personnel even threatened Chinese coast guard on site with a knife,” it added.
Philippine defense ministry spokesperson Arsenio Andolong maintained that Manila has evidence to counter China’s assertions.
“The facts are not distorted. They are documented, timestamped, and corroborated by video recordings, vessel logs, and on-site reporting by the Philippine Coast Guard,” Andolong said in a statement.
“The Philippines is not hyping the issue, the facts speak for themselves. These are aggressive and excessive actions of an encroaching state,” he added.
Sabina Shoal, which China refers to as Xianbin Reef and the Philippines as the Escoda Shoal, lies in the Philippines’ exclusive economic zone 150 km (95 miles) west of Palawan province.
China claims almost the entire South China Sea, a waterway supporting more than $3 trillion of annual commerce. The areas Beijing claims cut into the exclusive economic zones of Brunei, Indonesia, Malaysia, the Philippines and Vietnam.
An international arbitral tribunal ruled in 2016 that Beijing’s sweeping claims had no basis under international law, a decision China rejects.