Dutch authorities, supported by law enforcement partners from Canada, Germany, and the United States, carry out “Operation Endgame” to disrupt infrastructure tied to the SocGholish botnet and associated criminal activity linked to “Evil Corp.” Reporting across outlets says investigators and private partners remove malware from nearly 15,000 WordPress websites that were infected through the botnet’s operations. The action also involves taking down command-and-control resources: SecurityWeek reports 106 SocGholish C&C servers and related domains are removed as part of the operation, while other coverage describes the disruption of malicious servers used to control infected systems.

Officials characterize the goal as depriving cybercriminals of access to compromised computers by cleaning infected hosts and reducing the botnet’s ability to communicate and coordinate. The reporting consistently frames the effort as an international, coordinated response involving both public agencies and private sector partners, with the scale of the cleanup and the number of servers targeted cited as key outcomes.