Apr 13, 2026 • [email protected] (The Hacker News)
FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud Attempts
The FBI and Indonesian National Police jointly dismantled a global phishing network that utilized the W3LL off-the-shelf toolkit to harvest thousands of...
Executive Summary
The FBI and Indonesian National Police jointly dismantled a global phishing network that utilized the W3LL off-the-shelf toolkit to harvest thousands of victim credentials and attempt over $20 million in fraud. Law enforcement detained the alleged developer of the W3LL toolkit during coordinated operations. This phishing-as-a-service operation enabled threat actors to conduct large-scale credential theft campaigns targeting businesses and individuals worldwide. Organizations should enforce multi-factor authentication, conduct regular phishing awareness training, and monitor for suspicious login activity to mitigate similar threats. The takedown represents a significant blow to cybercrime-as-a-service infrastructure operating across borders.
Summary
The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims' account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has&
Published Analysis
The FBI and Indonesian National Police jointly dismantled a global phishing network that utilized the W3LL off-the-shelf toolkit to harvest thousands of victim credentials and attempt over $20 million in fraud. Law enforcement detained the alleged developer of the W3LL toolkit during coordinated operations. This phishing-as-a-service operation enabled threat actors to conduct large-scale credential theft campaigns targeting businesses and individuals worldwide. Organizations should enforce multi-factor authentication, conduct regular phishing awareness training, and monitor for suspicious login activity to mitigate similar threats. The takedown represents a significant blow to cybercrime-as-a-service infrastructure operating across borders. The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims' account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has& The U.S. Federal Bureau of Investigation (FBI), in partnership with the Indonesian National Police, has dismantled the infrastructure associated with a global phishing operation that leveraged an off-the-shelf toolkit called W3LL to steal thousands of victims' account credentials and attempt more than $20 million in fraud. In tandem, authorities detained the alleged developer, who has&
Linked Entities
- W3LL