Poland arrests suspect linked to Phobos ransomware operation

Poland arrests suspect linked to Phobos ransomware operation

Polish police arrested a 47-year-old in the Małopolska region suspected of ties to the Phobos ransomware group and seized computers and phones containing stolen credentials, credit card numbers, and server access data. The arrest was part of Operation Aether, an international Europol-coordinated effort that has disrupted Phobos infrastructure, led to extraditions and server seizures, and warned hundreds of companies of imminent attacks. #Phobos #OperationAether

Keypoints

  • A 47-year-old suspect was detained in Małopolska and charged under Article 269b for producing and distributing hacking tools.
  • Investigators seized devices containing credentials, passwords, credit card numbers, and server IP addresses usable in ransomware operations.
  • Evidence showed the suspect used encrypted messaging to communicate with the Phobos cybercrime organization.
  • Operation Aether, coordinated by Europol and Eurojust, targeted Phobos infrastructure and affiliates across multiple countries.
  • The international campaign has resulted in server seizures, extraditions, arrests, and warnings to more than 400 companies, with a Phobos/8-Base decryptor later released in July 2025.

Read More: https://www.bleepingcomputer.com/news/security/poland-arrests-suspect-linked-to-phobos-ransomware-operation/