Beautiful Virgin Islands

Monday, May 11, 2026

US Disables Russian Malware Used For 20 Years To Spy In 50 Countries

US Disables Russian Malware Used For 20 Years To Spy In 50 Countries

The FSB had successfully inserted the "Snake" or "Uroburos" malware on computer systems around the world.
The US Justice Department said Tuesday that it had disabled a "sophisticated" malware network used by Russia's FSB intelligence agency for two decades to spy in 50 countries including a NATO ally.

The FSB had successfully inserted the "Snake" or "Uroburos" malware on computer systems around the world, focused on government networks, research facilities, journalists and other targets, according to US officials.

Computers in the system also served as relay nodes to disguise traffic to and from Snake malware inserted on target computer systems, they said.

In a years-long operation, the FBI was able to defeat Snake by inserting its own bit of computer code into it, which issued commands causing the malware to overwrite itself, the Justice Department said.

"Through a high-tech operation that turned Russian malware against itself, US law enforcement has neutralized one of Russia's most sophisticated cyber-espionage tools, used for two decades to advance Russia's authoritarian objectives," said Deputy Attorney General Lisa Monaco.

The malware has been known by computer security experts for at least a decade, and CISA, the US cyber defense agency, said the FSB began developing it in 2003.

CISA called Snake "the most sophisticated cyber espionage tool in the FSB's arsenal," noting that it was particularly stealthy, extremely hard to detect in computer systems and network traffic.

In addition, it was designed for easy updating and modification, and yet had "surprisingly few bugs given its complexity," CISA said.

Those aspects allowed the FSB to work undetected for years through sprawling host networks to get into computers with sensitive documents.

At least in one case Snake was placed on the systems of an unnamed NATO country, allowing Russian intelligence to access and exfiltrate sensitive international relations documents and diplomatic communications, CISA said.

"The effectiveness of this type of cyber espionage implant depends entirely on its long-term stealth," the agency said.
Newsletter

Related Articles

Beautiful Virgin Islands
0:00
0:00
Close
The War Map: Professor Jiang’s Dark Theory of Iran, Trump, China, Russia, Israel, and the Coming Global Shock [Podcast]
The End of the Old Order [Podcast]
Labour Is No Longer a National Party [Podcast]
Lawyers vs Engineers: Why China Builds While America Litigates [Podcast]
The AI Gold Rush Is Coming for America’s Last Open Spaces [Podcast]
The Pentagon’s AI Squeeze: Eight Tech Giants Get In, Anthropic Gets Shut Out [Podcast]
AI Isn’t Stealing Your Job. It’s Dismantling It Piece by Piece.
Britain’s Democracy Is Now a Costume
Churchill’s Glass: The Drunk, the Doctor, and the Myth Britain Refuses to Sober Up From
The Met Gala Meets the Age of Billionaire Backlash
Russian Oligarch’s Superyacht Crosses Hormuz via Iran-Controlled Route
Gunfire Disrupts White House Correspondents’ Dinner as Trump Is Evacuated
A Leak, a King, and a Fracturing Alliance
Inside the Gates Foundation Turmoil: Layoffs, Scrutiny, and the Cost of Reputational Risk
UK Biobank Breach Exposes Health Data of 500,000, Listed for Sale on Chinese Platform
KPMG Cuts Around 10% of US Audit Partners After Failed Exit Push
French Police Probe Suspected Weather-Data Tampering After Unusual Polymarket Bets on Paris Temperatures
News Roundup
Microsoft lost 2.5 millions users (French government) to Linux
Privacy Problems in Microsoft Windows OS
News roundup
Péter András Magyar and the Strategic Reset of Hungary
Hungary After the Landslide — A Strategic Reset in Europe
Meghan Markle Plans Exclusive Women-Focused Retreat During Australia Visit
×