Over 15,000 machines taken down in Sality botnet operation after eight years

In a significant operation, CrowdStrike and the Department of Justice (DOJ) have dismantled the Sality botnet, which has been active for eight years and known for stealing Bitcoin and Ethereum. This takedown involved the isolation of more than 15,000 infected machines across four countries, marking a major victory in the ongoing fight against cybercrime. The botnet's long-standing presence in the cryptocurrency space has raised concerns, as it has facilitated numerous cyber-thefts and malicious activities targeting crypto assets.
The Sality botnet has been notorious for its sophisticated techniques in spreading malware and compromising systems. Initially identified in the mid-2000s, it evolved over the years to include capabilities specifically aimed at cryptocurrency theft. The botnet's ability to infect machines globally and remain undetected for extended periods has posed challenges to cybersecurity experts. The recent collaborative efforts between CrowdStrike and the DOJ highlight the growing recognition of the need for coordinated action against such complex cyber threats.
This takedown is crucial for the cryptocurrency market as it not only disrupts a significant avenue for cybercriminals but also reassures investors regarding the security of their digital assets. The dismantling of the Sality botnet sends a strong message that authorities are actively working to mitigate risks associated with malware and cyber theft in the crypto space. This could lead to increased confidence among users and may have a positive impact on market stability.
Industry reactions have been largely positive, with experts commending the collaborative efforts between private cybersecurity firms and government agencies. Many believe that such operations will deter future attacks and encourage more robust security measures within the cryptocurrency ecosystem. The successful takedown of the Sality botnet serves as a precedent for future initiatives aimed at combating cybercrime, potentially leading to further advancements in cybersecurity protocols.
Looking ahead, the dismantling of the Sality botnet may prompt a wave of similar operations targeting other malicious networks that threaten the integrity of the cryptocurrency market. As the digital asset space continues to grow, so does the sophistication of cyber threats. Ongoing vigilance and collaboration will be essential to safeguard the future of cryptocurrencies, ensuring that both users and investors can navigate this landscape with confidence.
CoinMagnetic Team
Crypto investors since 2017. We trade with our own money and test every exchange ourselves.
Updated: September 2026
From our insights:
Related news

Dismantling of Russian malware stops 8 years of crypto theft from 15,000 machines

Bitcoin hits $77,000 wall as the Fed gets trapped between weak jobs and $90 oil

XRP and bitcoin show signs of 'Bart Simpson pattern' amid price declines

Remixpoint sells $5.5 million in altcoins, retains 1,506 BTC investment

Capital B plans to acquire 376 BTC after $8.8 million investment from Adam Back
