StealC Historical Bot Infection Special Report
June 25, 2026
On Wednesday 24th June 2026, international law enforcement partners announced additional successful cyber crime disruption actions as part of the ongoing Operation Endgame initiative. This time the StealC infostealer and Amadey malware-as-a-service families were targeted. Law enforcement acquired almost 30 million compromised credentials stolen by StealC between 4th July 2025 and 16th June 2026. Shadowserver is sharing elements of this dataset in another one-off Special Report, to allow historical and recently compromised Windows computers to be remediated by system defenders. High level analysis of the stolen credentials is provided.









