← Back to BrewedIntel
incidenthighCredential TheftFinancial FraudPhishingW3LL

Apr 13, 2026 • [email protected] (The Hacker News)

FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud Attempts

The FBI and Indonesian National Police jointly dismantled a global phishing network that utilized the W3LL off-the-shelf toolkit to harvest thousands of...

Source
The Hacker News
Category
incident
Severity
high

Executive Summary

The FBI and Indonesian National Police jointly dismantled a global phishing network that utilized the W3LL off-the-shelf toolkit to harvest thousands of victim credentials and attempt over $20 million in fraud. Law enforcement detained the alleged developer of the W3LL toolkit during coordinated operations. This phishing-as-a-service operation enabled threat actors to conduct large-scale credential theft campaigns targeting businesses and individuals worldwide. Organizations should enforce multi-factor authentication, conduct regular phishing awareness training, and monitor for suspicious login activity to mitigate similar threats. The takedown represents a significant blow to cybercrime-as-a-service infrastructure operating across borders.

Summary

The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims' account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has&

Published Analysis

The FBI and Indonesian National Police jointly dismantled a global phishing network that utilized the W3LL off-the-shelf toolkit to harvest thousands of victim credentials and attempt over $20 million in fraud. Law enforcement detained the alleged developer of the W3LL toolkit during coordinated operations. This phishing-as-a-service operation enabled threat actors to conduct large-scale credential theft campaigns targeting businesses and individuals worldwide. Organizations should enforce multi-factor authentication, conduct regular phishing awareness training, and monitor for suspicious login activity to mitigate similar threats. The takedown represents a significant blow to cybercrime-as-a-service infrastructure operating across borders. The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims' account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has& The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims' account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has&

Linked Entities

  • W3LL