DOJ Seizes Cryptocurrency from Qakbot Malware Operators
- Main event disrupts Qakbot’s criminal network.
- $24 million seized from Qakbot.
- Operation Endgame targets ransomware profits.

The DOJ’s pursuit of Qakbot underscores intensified efforts to dismantle international cybercrime operations, impacting ransomware actors and showcasing governmental intent to restore security.
Operation Endgame
Operation Endgame, led by the DOJ with international support, seized $24 million in cryptocurrency linked to Rustam Rafailevich Gallyamov’s Qakbot operation aimed at ransomware distribution and monetizing global cybercrime. Law enforcement affiliated the operation with notable ransomware groups and identified Bitcoin and stablecoins among seized assets. US Attorney Bill Essayli emphasized the return of ill-gotten gains to victims.
He wasn’t just writing malware—he was monetizing misery on a global scale. And now we’re working to return those stolen funds to the victims.
– Bill Essayli, U.S. Attorney, Central District of California
Bitcoin’s seizure indicates law enforcement’s growing capability in targeting cybercrime profits amidst a climate of heightened global vigilance. The action, however, does not influence legitimate blockchain initiatives, reflecting a focused approach on criminal enterprises.
The operation has prompted some instabilities within targeted ransomware networks. Despite financial disruption, legitimate blockchain and DeFi sectors remain unscathed, evidencing the initiative’s pinpoint accuracy in handling illicit digital assets.
Future Strategies
In the evolving landscape, law enforcement continues to refine strategies to reclaim and secure assets from cybercriminals. Trends suggest increased technological collaborations in future international operations, spotlighting law enforcement efficiency and deterring cybercrime.