Sality Botnet Cut Off After 23 Years of Crypto Address Hijacking

Sality Botnet Cut Off After 23 Years of Crypto Address Hijacking


Rows of servers in a data center representing infrastructure used by peer-to-peer botnets image By Isaac • September 2, 2026 11:22 am •

One of the internet’s longest-running botnets has finally lost its command channel, but the infected computers it left behind are not magically clean.

The U.S. Department of Justice announced a multinational operation that disrupted Sality infrastructure in the United States and Europe. American authorities seized Sality-linked domains, while partners in Bulgaria, Hungary and Romania acted against additional infrastructure.

Trending: ‘Killed to Order’: How China secretly harvests and traffics organs

The operation brought together the FBI, the Defense Criminal Investigative Service, CrowdStrike, the Shadowserver Foundation, Europol, Eurojust and national law-enforcement agencies. DOJ said the partnership advanced the first pillar of President Trump’s Cyber Strategy for America: shaping adversary behavior by degrading malicious infrastructure.

Sality has been active since 2003. Its durability came from a peer-to-peer design that allowed

Continue reading

 

Join the conversation!

Please share your thoughts about this article below. We value your opinions, and would love to see you add to the discussion!