An RCMP epaulette is seen in Edmonton, Wednesday, Feb. 5, 2025. THE CANADIAN PRESS/Jason Franson

Global effort targeted fake computer updates tied to Russian cybercriminals: RCMP

Jun 19, 2026 | 10:32 AM

OTTAWA — The RCMP says it worked with international partners to deal a blow to cybercriminals who trick users into downloading malicious files disguised as legitimate computer updates.

Investigators say SocGholish malware — linked to the Russian cybercriminal group Evil Corp — exploited thousands of WordPress sites with the aim of gaining unauthorized access to computer systems and data.

An RCMP media statement says the force teamed up with counterparts in the Netherlands, the United States and Germany on the joint action, part of an effort known as Operation Endgame.

A notice from the Dutch police says agencies took down 106 servers and domains worldwide, remediated almost 15,000 websites, cleaned infected WordPress sites and notified victims.