www.trendmicro.com 5/3/2026, 10:00:52 AM · via preferred

Trend Micro helps INTERPOL seize 1,300 botnet C2 servers

CyberSIXT Evidence Panel Source marked as original reporting

TREND Micro says that private entities contributed to INTERPOL’s Operation Synergia, a global effort that resulted in the takedown of 1,300 command-and-control servers linked to botnet and malware networks, phishing operations, and ransomware activity. The operation involved 55 member countries and led to 30 house searches and 70 suspects linked to phishing, malware, or ransomware campaigns.

Trend Micro shared malicious IP addresses across three threat categories—ransomware, banking trojans, and phishing—and contributed to 63 INTERPOL Cyber Activity Reports. In addition, the collaboration supported INTERPOL’s Cyber Fusion Centre by identifying more C&C servers across multiple locations, including Kuwait, Hong Kong, Singapore, Bolivia, and parts of Europe.

Some servers involved did not participate in the operation, depending on the participating member countries, but the telemetry shared by Trend Micro aided law enforcement in coordinating responses. According to INTERPOL, this partnership continues a track record of successful joint takedowns and arrests dating back to prior operations.

View full article

Article by CyberSIXT