Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
  • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Podcasts
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
  • Podcasts
Follow US
© 2026 By Crypto Times. All Rights Reserved.
Industry

Europol, DOJ Freeze $3.5M Crypto in SocksEscort Takedown

Investigators say the service enabled cybercrime by masking users’ identities through infected devices.

Written By:
Shubham Soni

Last updated: March 16, 2026 11:52 AM
Published March 14, 2026 1:32 AM
Share
Last updated: March 16, 2026 11:52 AM
Published March 14, 2026 1:32 AM
Europol, DOJ Freeze $3.5M Crypto in SocksEscort Takedown

Key Highlights

  • Europol and the U.S. Department of Justice froze $3.5M in crypto linked to the SocksEscort network.
  • Malware-infected routers and IoT devices were used to provide anonymous proxy access for cybercrime.
  • Authorities seized domains, servers, and wallets in a coordinated international crackdown.

Law enforcement agencies in the United States and Europe have disrupted a large cybercrime operation known as “SocksEscort,” freezing approximately $3.5 million in cryptocurrency tied to the network.

According to an official release, the action involved coordination between Europol and the United States Department of Justice (DOJ), along with authorities in multiple countries.

Officials said the service sold access to a vast pool of internet proxies created by compromising home routers and connected devices.

Malware-infected devices used as cover

Investigators estimate the network infected more than 369,000 routers and Internet-of-Things devices across 163 countries.

By routing internet traffic through these compromised machines, users could conceal their true locations and identities, a capability frequently used in online fraud and cyberattacks. Authorities said the operation provided tens of thousands of proxy endpoints over several years.

Domains, servers, and crypto funds seized

During the March 11 crackdown, dubbed Operation Lightning, law enforcement seized key infrastructure supporting the service.

According to Europol:

  • 34 internet domains were taken down
  • 23 servers across seven countries were seized
  • Cryptocurrency wallets linked to the operation were frozen

Investigators also identified a payment platform associated with the network that allegedly received more than $5.7 million in crypto.

Links to fraud, ransomware, and other crimes

Officials said the proxy network enabled a wide range of illegal activities by obscuring perpetrators’ digital footprints.

These reportedly included ransomware attacks, distributed denial-of-service (DDoS) campaigns, account takeovers, and the distribution of illegal material. The investigation was conducted through Europol’s Joint Cybercrime Action Taskforce, which coordinates cross-border operations against major cyber threats.

U.S. authorities cite financial losses

In a separate announcement, prosecutors in the Eastern District of California described how criminals allegedly used SocksEscort proxies to conduct financial fraud.

The U.S. Attorney’s Office for the Eastern District of California said the application listed roughly 8,000 infected routers as of early 2026, including about 2,500 located in the United States.

Reported victim losses included:

  • A crypto exchange customer in New York allegedly defrauded of $1 million
  • A Pennsylvania manufacturer said to have lost $700,000
  • Military personnel reportedly losing about $100,000

Authorities said proxy access helped attackers bypass security checks designed to detect suspicious login locations. The case highlights how compromised everyday devices can be repurposed into infrastructure for global cybercrime.

Also Read: U.S. Cracks Down on Crypto-Fueled Revenue Stream of DPRK Hackers

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News
Google News Banner

TAGGED:Crypto HackUnited States
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link
Shubham Soni Crypto Content Editor
By Shubham Soni
Follow:
Shubham Soni is a veteran content editor and journalist with over three years of experience leading digital editorial strategies across the U.S. and Indian markets. With a background in high-pressure newsrooms, Shubham specializes in the rigorous fact-checking, structural editing, and narrative development of complex news and explainers. Throughout his career at prominent digital publications like Sportskeeda and Opoyi, he has managed fast-paced desks covering global politics, sports, and entertainment. His expertise lies in transforming technical information into accessible, high-impact reporting while maintaining strict adherence to editorial ethics and accuracy. At The Crypto Times, Shubham oversees the editorial workflow, mentoring writers to ensure all cryptocurrency research and analysis meets the highest standards of clarity and journalistic integrity.

Latest News

‘Scam Altman’ Musk’s Jab Meets ZachXBT Claim as Worldcoin Faces Fresh Scrutiny
‘Scam Altman’: Musk’s Jab Meets ZachXBT Claim as Worldcoin Faces Fresh Scrutiny
ZetaChain Halts Cross-Chain Activity After GatewayEVM Smart Contract Exploit
ZetaChain Halts Cross-Chain Activity After GatewayEVM Smart Contract Exploit
Clarity Act Stuck in Senate as Clock Ticks on 2026 Crypto Regulation
Clarity Act Stuck in Senate as Clock Ticks on 2026 Crypto Regulation
Canton Tops Chain Revenue Rankings, Ahead of Tron and Ethereum
Canton Tops Chain Revenue Rankings, Ahead of Tron and Ethereum
Rep. Nick Begich Pushes U.S. Bitcoin Reserve Plan, Rebrands Bill as ARMA
Rep. Nick Begich Pushes U.S. Bitcoin Reserve Plan, Rebrands Bill as ARMA

Find Us on Socials

You may also like

CLARITY Act Nears Senate Action, Lummis Says at Bitcoin Conference

CLARITY Act Nears Senate Action, Lummis Says at Bitcoin Conference

Gemini Introduces Agentic Trading for Automated Crypto Execution

Gemini Introduces Agentic Trading for Automated Crypto Execution

BNBTradeBot Launches AI-Powered Crypto Trading System

BNBTradeBot Launches AI-Powered Crypto Trading System

Circle Backs Aave With Token Purchase Amid DeFi United Push

Circle Backs Aave With Token Purchase Amid DeFi United Push

The Crypto Times Logo PNG

Providing real-time, accurate Crypto reporting. Your trusted source for Crypto News and Research.

Stay Updated

All News
Exclusive
Opinions
Learn
Podcasts

Company

About Us
Our Authors
Editorial Policy
AI Policy
Advertorial Policy

Get In Touch

Contact Us
Career

Find Us on Socials

X-twitter Linkedin Telegram Youtube Instagram

© 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

DMCA.com Protection Status
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Cookie policy
Do Not Sell or Share My Personal Information