The US Department of Justice filed a civil forfeiture complaint to claim over $24 million in cryptocurrency tied to Qakbot malware developer Rustam Rafailevich Gallyamov. The US Department of Justice (DOJ) has filed a civil forfeiture complaint to seize more than $24 million in cryptocurrency from Rustam Rafailevich Gallyamov, a Russian national accused of developing the Qakbot malware. According to a May 22 announcement, the DOJ unsealed charges against the 48-year-old Moscovite with a federal indictment. Gallyamov is allegedly the malware developer behind the Qakbot botnet. “Today’s announcement of the Justice Department’s latest actions to counter the Qakbot malware scheme sends a clear message to the cybercrime community,” said Matthew Galeotti, head of the DOJ’s criminal division. Read more
Curve Finance attackers used DNS hijacking to exploit its front end, redirecting users to a fake site and draining wallets. On May 12, 2025, at 20:55 UTC, hackers hijacked the “.fi” domain name system (DNS) of Curve Finance after managing to access the registrar. They began sending its users to a malicious website, attempting to drain their wallets. This was the second attack on Curve Finance’s infrastructure in a week. Users were directed to a website that was a non-functional decoy, designed only to trick users into providing wallet signatures. The hack hadn’t breached the protocol’s smart contracts and was limited to the DNS layer. Read more