On Friday, INTERPOL announced the dismantling of 45,000 malicious IP addresses and servers used in phishing, malware, and ransomware campaigns. This significant operation, part of an international law enforcement effort involving 72 countries and territories, resulted in the arrest of 94 individuals with another 110 under investigation.
The operation showcases the evolving capabilities of international cybercrime coordination. According to INTERPOL, authorities seized 212 electronic devices and servers during targeted raids across the globe. One notable operation in Bangladesh led to the arrest of 40 suspects and the confiscation of 134 electronic devices linked to various cybercrimes including loan and job scams, identity theft, and credit card fraud.
"This demonstrates the scale and sophistication of transnational cybercriminal networks, but also our growing capacity to combat them," said an INTERPOL spokesperson.
In Togo, authorities apprehended 10 suspects operating a fraud ring from a residential area. The group employed social engineering tactics including romance scams and sextortion, where victims were impersonated after gaining unauthorized access to accounts. Similarly, Macau law enforcement identified over 33,000 phishing and fraudulent websites related to fake casinos and attacks on critical infrastructure.
This cybercrime crackdown represents the third phase of Operation Synergia, which ran from July 2025 to January 2026. The previous phases identified thousands of malicious servers and led to numerous arrests, showing an ongoing, systematic approach to dismantling criminal networks.
Simultaneously, India's Central Bureau of Investigation (CBI) revealed coordinated searches targeting a transnational fraud syndicate operating through a Dubai-based fintech platform called Pyypl. The CBI alleged that thousands of Indian citizens were defrauded of substantial amounts through deceptive online investment and job scams.
Cybersecurity experts note that these sophisticated fraud operations utilize multiple layers of obfuscation. Criminals leverage social media platforms, mobile applications, and encrypted messaging to build trust before requesting deposits. Once funds are transferred, they rapidly move money through multiple mule accounts and convert it to cryptocurrency using virtual asset exchanges in India.
"The investigation revealed a sophisticated money laundering infrastructure that included 15 shell companies and two entities that converted illicit proceeds to USDT," stated the CBI. Key member Ashok Kumar Sharma is currently in custody, with multiple bank accounts frozen and substantial digital evidence secured.
These parallel operations underscore the global nature of cybercrime and the necessity for enhanced international cooperation. The scale of these coordinated actions demonstrates that criminal networks, no matter how sophisticated, are increasingly vulnerable to systematic investigation and dismantling.
