{"id":18849,"date":"2024-01-08T20:04:22","date_gmt":"2024-01-08T20:04:22","guid":{"rendered":"https:\/\/gridinsoft.com\/blogs\/?p=18849"},"modified":"2024-01-09T10:34:41","modified_gmt":"2024-01-09T10:34:41","slug":"xdedic-members-detained","status":"publish","type":"post","link":"https:\/\/gridinsoft.com\/blogs\/xdedic-members-detained\/","title":{"rendered":"xDedic Marketplace Members Detained In International Operations"},"content":{"rendered":"<p>The infamous xDedic Marketplace, known for its <strong>illicit trade in compromised computers and personal data<\/strong>, has been effectively dismantled. 19 persons related to the marketplace were detained. The overall operation is the result of joint effort of law enforcement from 11 countries.<\/p>\n<h2>xDedic\u2019s Actors Face US Courts<\/h2>\n<p>Although the actual seizure of xDedic <a href=\"https:\/\/www.justice.gov\/usao-mdfl\/pr\/xdedic-marketplace-website-involved-illicit-sale-compromised-computer-credentials-and\" rel=\"noopener noreferrer nofollow\" target=\"_blank\">happened almost 5 years ago<\/a>, in 2019, the overall process of its members\u2019 <strong>detainment took quite some time<\/strong>. The diverse nationalities of the charged defendants posed a unique challenge, as many hailed from countries that do not extradite their nationals. However, diligent efforts led to the charging and\/or extradition of 17 defendants to the United States.<\/p>\n<p>The extensive investigation was spearheaded by the Tampa Division of the Federal Bureau of Investigation. It also involved the Tampa Field Office of Internal Revenue Service &#8211; Criminal Investigation. <strong>Assistance was provided by various international and national agencies<\/strong>, highlighting the importance of <a href=\"https:\/\/gridinsoft.com\/blogs\/the-us-wont-cooperate-with-russia-on-ransomware-anymore\/\">global cooperation in combating cybercrime<\/a>. The cases are currently being prosecuted by 3 Assistant United States Attorneys.<\/p>\n<h2>What is xDedic?<\/h2>\n<p>xDedic was a notorious online <a href=\"https:\/\/gridinsoft.com\/darknet\">marketplace on the dark web<\/a>, known for selling compromised computer credentials. These <strong>credentials included usernames and passwords<\/strong>. It facilitated the illegal sale of access to over 700,000 hacked servers worldwide. These servers included those in government, healthcare, and transportation sectors. Cybercriminals used xDedic to buy credentials to servers, <strong>enabling them to commit various illegal activities<\/strong> <a href=\"https:\/\/gridinsoft.com\/ransomware\">like ransomware attacks<\/a>. The site was known for its sophisticated operational security and use of cryptocurrency, making it difficult to track the identities of its users and the locations of its servers.<\/p>\n<figure id=\"attachment_18852\" aria-describedby=\"caption-attachment-18852\" style=\"width: 1000px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" loading=\"lazy\" decoding=\"async\" src=\"https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2024\/01\/xdedic-purchase.webp\" alt=\" xDedic marketplace \" width=\"1000\" height=\"455\" class=\"size-full wp-image-18852\" title=\"\" srcset=\"https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2024\/01\/xdedic-purchase.webp 1000w, https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2024\/01\/xdedic-purchase-300x137.webp 300w, https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2024\/01\/xdedic-purchase-768x349.webp 768w\" sizes=\"auto, (max-width: 1000px) 100vw, 1000px\" \/><figcaption id=\"caption-attachment-18852\" class=\"wp-caption-text\">Stolen Credentials on xDedic Marketplace for Sale<br \/><\/figcaption><\/figure>\n<h2>Seizure of xDedic<\/h2>\n<p>The turning point in this saga came in January 2019 when the U.S. Attorney\u2019s Office for the Middle District of Florida, in collaboration with international law enforcement agencies, <strong>seized xDedic\u2019s domain names and dismantled its infrastructure<\/strong>. This operation, which involved authorities from Belgium, Ukraine, Europol, the Dutch National Police, and the German Bundeskriminalamt, effectively ended the marketplace&#8217;s operations\u200b\u200b.<\/p>\n<p>Following the marketplace&#8217;s shutdown, <strong>efforts shifted towards bringing those responsible<\/strong> to justice. Nineteen individuals have been charged in connection with the marketplace, facing a range of offenses from cyber fraud to money laundering. The charges reflect the seriousness of the crimes associated with the xDedic marketplace.<\/p>\n<p>High-profile figures like Alexandru Habasescu and Pavlo Kharmanskyi, administrators of xDedic, <strong>were apprehended and sentenced to prison<\/strong>. Habasescu, the technical brain behind xDedic, was arrested in the Spanish Canary Islands, while Kharmanskyi was detained at the Miami International Airport. Other significant arrests included Dariy Pankov, who was a major seller on the site. Also arrested was Allen Levinson, a <strong>prolific buyer with a specific interest in U.S.<\/strong>-based Certified Public Accounting firms.<\/p>\n<h2>Recommendations and future outlook<\/h2>\n<p>The shutdown of xDedic Marketplace was a <strong>significant victory in the ongoing battle against cybercrime<\/strong>. Significant, but not the turning point: numerous other marketplaces appeared afterwards, including infamous Breached Forums, Genesis and RaidForums. When the servers are shut down, but the actors remain free, <strong>that is just the matter of time<\/strong> when and where they will be back into business.<\/p>\n<p>When we talk about the detainment of those actors, things are obviously different. This not only proves that it is impossible to be safe and commit cybercrimes, <strong>it also shows that even a 5 year term is not long enough<\/strong> to avoid the punishment. Will this work as a stop sign for others? Not likely, but they will barely miss that info either.<\/p>\n<p style=\"padding-top:15px;padding-bottom:15px;\"><a href=\"\/download\/antimalware\" rel=\"nofollow\"><img loading=\"lazy\" loading=\"lazy\" decoding=\"async\" src=\"\/blogs\/wp-content\/uploads\/2022\/07\/env02.webp\" alt=\"xDedic Marketplace Members Detained In International Operations\" width=\"798\" height=\"336\" class=\"aligncenter size-full\" title=\"\"><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The infamous xDedic Marketplace, known for its illicit trade in compromised computers and personal data, has been effectively dismantled. 19 persons related to the marketplace were detained. The overall operation is the result of joint effort of law enforcement from 11 countries. xDedic\u2019s Actors Face US Courts Although the actual seizure of xDedic happened almost [&hellip;]<\/p>\n","protected":false},"author":7,"featured_media":18880,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"content-type":"","_sitemap_exclude":false,"_sitemap_priority":"","_sitemap_frequency":"","footnotes":""},"categories":[15],"tags":[619,416],"class_list":{"0":"post-18849","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-security-news","8":"tag-cybersecurity","9":"tag-darknet"},"featured_image_src":"https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2024\/01\/GS_Blog_banner_xDedic-Marketplace-Members-Detained-In-International-Operations_1280x674.webp","author_info":{"display_name":"Stephanie Adlam","author_link":"https:\/\/gridinsoft.com\/blogs\/author\/adlam\/"},"_links":{"self":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts\/18849","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/comments?post=18849"}],"version-history":[{"count":11,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts\/18849\/revisions"}],"predecessor-version":[{"id":18871,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts\/18849\/revisions\/18871"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/media\/18880"}],"wp:attachment":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/media?parent=18849"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/categories?post=18849"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/tags?post=18849"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}