US charges suspected Redline infostealer developer, admin

Share:

The identity of a suspected developer and administrator of the Redline malware-as-a-service operation has been revealed: Russian national Maxim Rudometov.

Infrastructure takedown

As promised on Monday when they announced the disruption of the Redline and Meta infostealer operations, law enforcement Operation Magnus has unveiled on Tuesday how the takedown played out.

“Investigations into Redline and Meta started after victims came forward and a security company notified authorities about possible servers in the Netherlands linked to the software. Authorities discovered that over 1,200 servers in dozens of countries were running the malware,” shared Eurojust, the European Union Agency for Criminal Justice Cooperation.

Eurojust coordinated the information exchange between and actions taken by authorities from the Netherlands, the United States, Belgium, Portugal, United Kingdom and Australia, which resulted in three servers taken down in the Netherlands, two seized domains, the disruption of several Redline and Meta communication channels (Telegram), and two people – suspected customers of Rudometov’s – being taken into custody in Belgium.

“The authorities also retrieved a database of clients from Redline and Meta. Investigations will now continue into the criminals using the stolen data,” Eurojust added.

The security company mentioned in the latest announcements is ESET, which also made available a scanner that Windows users can leverage to check whether they’ve been infected with the Redline or Meta stealers and to remove the malware (if present).

It is estimated that the Redline and Meta infostealers stole information from millions of victims around the world.

Pinpointing the person behind the operation

Law enforcement managed to connect various online monikers and email addresses used by Rudometov over the years on hacking forums and link some to a VK (Russian social network) account in that name.

“A judicially-authorized search of [the Apple account registered with one of those email addresses] revealed an associated iCloud account and numerous files that were identified by antivirus engines as malware, including at least one that was analyzed by the Department of Defense Cybercrime Center (‘DC3’) and determined to be Redline,” the unsealed criminal complaint against Rudometov says.

“Notably, among the malicious files saved to Rudometov’s Apple iCloud Drive was a file entitled ‘MysteryPanel.rar’ which correlates to the [Redline infostealer]. In addition to the registration information indicating Rudometov was the owner of the Apple account, the account contained photos that included Rudometov’s official identification documents and apparent personal photos.”

He has also been tied with a number of cryptocurrency accounts that were used to receive and launder payments, and the malware was hosted on servers controlled and accessed by him.

Rudometov has been charged by the US Department of Justice with access device fraud, conspiracy to commit computer intrusion, and money laundering.

The DOJ press release does not mention whether Rudometov is in police custody, which means he’s most likely not.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
9:57 pm, Jun 22, 2025
weather icon 20°C
L: 19° | H: 21°
few clouds
Humidity: 68 %
Pressure: 1011 mb
Wind: 15 mph SW
Wind Gust: 26 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 20%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:43 am
Sunset: 9:21 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
19° | 21°°C 0 mm 0% 10 mph 68 % 1011 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
15° | 23°°C 0.66 mm 66% 14 mph 78 % 1016 mb 0 mm/h
Tue Jun 24 10:00 pm
weather icon
13° | 24°°C 0.2 mm 20% 14 mph 81 % 1016 mb 0 mm/h
Wed Jun 25 10:00 pm
weather icon
16° | 28°°C 0 mm 0% 11 mph 88 % 1014 mb 0 mm/h
Thu Jun 26 10:00 pm
weather icon
17° | 25°°C 1 mm 100% 15 mph 84 % 1018 mb 0 mm/h
Today 10:00 pm
weather icon
18° | 20°°C 0 mm 0% 10 mph 68 % 1011 mb 0 mm/h
Tomorrow 1:00 am
weather icon
19° | 19°°C 0 mm 0% 13 mph 71 % 1011 mb 0 mm/h
Tomorrow 4:00 am
weather icon
17° | 18°°C 0.66 mm 66% 14 mph 78 % 1011 mb 0 mm/h
Tomorrow 7:00 am
weather icon
15° | 15°°C 0.2 mm 20% 13 mph 64 % 1013 mb 0 mm/h
Tomorrow 10:00 am
weather icon
18° | 18°°C 0 mm 0% 13 mph 45 % 1014 mb 0 mm/h
Tomorrow 1:00 pm
weather icon
20° | 20°°C 0 mm 0% 13 mph 32 % 1014 mb 0 mm/h
Tomorrow 4:00 pm
weather icon
23° | 23°°C 0 mm 0% 14 mph 30 % 1014 mb 0 mm/h
Tomorrow 7:00 pm
weather icon
21° | 21°°C 0 mm 0% 14 mph 40 % 1015 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€86,239.79
-3.37%
Ethereum(ETH)
€1,891.40
-9.36%
Tether(USDT)
€0.87
0.00%
XRP(XRP)
€1.71
-5.74%
Solana(SOL)
€112.07
-6.86%
USDC(USDC)
€0.87
0.00%
Dogecoin(DOGE)
€0.127545
-7.36%
Shiba Inu(SHIB)
€0.000009
-6.25%
Pepe(PEPE)
€0.000008
-9.98%
Peanut the Squirrel(PNUT)
€0.218233
13.10%
Scroll to Top