Listen to this Post
Introduction: The Rise of a New Digital Battlefield
The internet has transformed the way criminals communicate, organize, and attack. While traditional cybercrime groups often focus on financial gain, a new generation of decentralized online networks has emerged, combining hacking, exploitation, extremist ideology, and real-world violence. Among the most concerning examples is “The Com” — a loosely connected digital ecosystem that has attracted international attention for its involvement in ransomware operations, online abuse, radicalization, and attacks targeting vulnerable individuals.
In response to this growing threat, Europol has expanded Project COMPASS, a multinational initiative designed to disrupt and investigate The Com’s activities across borders. The operation brings together law enforcement agencies, cybersecurity experts, and counter-terrorism units from dozens of countries to address a threat that does not fit into a single category.
The Com is not a traditional criminal organization with a clear hierarchy or headquarters. Instead, it operates as a decentralized online movement spread across social networks, messaging platforms, gaming communities, and digital entertainment services. This structure makes it difficult to dismantle, as members can quickly migrate, rebuild communities, and continue operations under new identities.
The Com: A Decentralized Network Combining Cybercrime and Extremism
The term “The Com” refers to a broad online community rather than a single organized group. Investigators describe it as a transnational virtual network where individuals and smaller groups collaborate around criminal activities, extremist beliefs, and harmful online behavior.
Unlike conventional gangs or cybercrime syndicates, The Com relies heavily on anonymity, online recruitment, and loosely connected communities. Members often use encrypted communication channels, gaming platforms, and social media spaces to identify targets, recruit participants, and distribute malicious content.
Europol investigators have identified three major operational branches within this ecosystem:
Cyber Com — focused on hacking, ransomware attacks, and digital intrusions.
Offline Com — associated with physical violence, property destruction, and extremist-inspired actions.
(S)extortion Com — targeting victims, particularly minors, through coercion, exploitation, and psychological manipulation.
This combination creates a unique challenge because the network crosses multiple areas of law enforcement responsibility, including cybercrime, terrorism prevention, child protection, and organized crime investigations.
Cyber Com: When Ideological Networks Meet Ransomware Operations
The Cyber Com branch represents the intersection between extremist communities and financially motivated cyberattacks. Members have been linked to network intrusions, ransomware deployment, and attacks against organizations.
Cybersecurity researchers have increasingly warned about the danger of groups that combine ideological motivation with technical capability. Unlike traditional ransomware gangs that negotiate for cryptocurrency payments, ideologically driven attackers may seek disruption, publicity, intimidation, or social influence.
This creates additional risks for businesses, governments, and critical infrastructure providers.
A ransomware attack from a financially motivated group may end after payment negotiations fail or succeed. However, attacks linked to extremist communities may continue regardless of financial outcomes because the primary objective can be chaos, attention, or ideological messaging.
Offline Com: The Transition From Online Hate to Real-World Violence
One of the most concerning aspects of The Com is the movement of harmful online activities into physical environments.
The Offline Com branch promotes destructive behavior, violence, and extremist actions. Authorities are increasingly focused on how online communities can accelerate radicalization, especially among young and vulnerable individuals.
Digital platforms can create environments where harmful ideas spread rapidly. Individuals who initially join online communities for attention, belonging, or curiosity may gradually become exposed to increasingly extreme content.
Law enforcement agencies consider this transition from online activity to real-world violence one of the greatest challenges of modern digital investigations.
764: A Particularly Dangerous Subgroup Targeting Minors
Among the groups connected to The Com, the subgroup known as 764 has received significant attention from investigators.
Authorities have identified 764 as a network specializing in grooming vulnerable minors and manipulating victims through psychological pressure. Members allegedly use coercion to force victims into producing explicit material, which is then used for blackmail or shared within criminal circles.
The danger of groups like 764 comes from their ability to combine several forms of abuse:
Online grooming
Sexual exploitation
Blackmail
Psychological manipulation
Promotion of self-harm and violence
The use of social platforms, gaming communities, and private messaging channels allows these groups to search for vulnerable targets while hiding behind fake identities.
Protecting young users has therefore become a central priority for Europol and international partners involved in Project COMPASS.
Project COMPASS: A Global Law Enforcement Response
Europol launched Project COMPASS in January 2025 under the coordination of the European Counter Terrorism Center (ECTC).
The initiative has expanded into a multinational operation involving approximately 30 partner nations, including European Union countries as well as Australia, Canada, New Zealand, the United Kingdom, and the United States.
The project focuses on improving cooperation between countries because The Com does not operate within national borders.
Investigators share intelligence, compare evidence, identify connections between cases, and coordinate actions against suspects and digital infrastructure.
International Data Sharing and Investigation Coordination
One of the strongest elements of Project COMPASS is the use of coordinated intelligence operations.
Authorities conduct structured data-sharing sessions, sometimes referred to as data sprints, where investigators compare information from different countries.
These efforts help identify:
Common suspects
Victim networks
Online accounts
Digital infrastructure
Criminal relationships
A suspect operating from one country may target victims thousands of miles away, making international cooperation essential.
Without collaboration, criminals can exploit legal differences and geographic limitations to avoid detection.
Protecting Victims: Prevention Becomes a Core Strategy
Project COMPASS is not only focused on arrests. Prevention and victim protection are major parts of the operation.
Authorities are especially concerned about minors because young users often spend significant time on platforms where recruitment and manipulation can occur.
Prevention efforts include:
Public awareness campaigns
Education programs
Guidance for parents and communities
Improved reporting mechanisms
Cooperation with technology companies
The goal is to identify risks before victims experience serious harm.
Operation Results: Arrests, Victim Protection, and Continued Investigation
By the July 2026 update, Project COMPASS had already produced measurable results.
Authorities reported:
Four victims safeguarded
Thirty perpetrators arrested
Sixty-two victims identified or partially identified
One hundred seventy-nine suspected perpetrators identified
Nine international awareness campaigns conducted
Some arrests also contributed to the wider AP Dolphin initiative.
However, investigators emphasize that the operation remains ongoing. Because The Com operates through decentralized communities, removing individual members does not necessarily eliminate the broader network.
Deep Analysis: Understanding the Technical and Cybersecurity Risks
How Defenders Can Investigate Potential Threats
Security teams dealing with ransomware campaigns, online exploitation reports, or suspicious extremist activity should understand that The Com represents a blended threat model.
Traditional security monitoring often separates cybercrime from physical threats. However, networks like The Com demonstrate that these categories are increasingly connected.
Security analysts should monitor:
Suspicious account activity
Unusual communication patterns
Ransomware indicators
Threat actor infrastructure
Cryptocurrency movements
Social engineering campaigns
Example SOC Investigation Commands
Searching Linux Systems for Suspicious Network Activity
sudo netstat -tulpn
This command helps identify unexpected listening services or unknown processes communicating externally.
Checking Active Processes
ps aux --sort=-%cpu | head
Security teams can use this to identify unusual processes consuming system resources.
Searching Windows Event Logs
Get-WinEvent -LogName Security -MaxEvents 50
Useful for reviewing recent authentication and security-related events.
Checking Suspicious Network Connections
Get-NetTCPConnection | Where-Object {$_.State -eq "Established"}
This helps identify active outbound connections that may require investigation.
Indicators Security Teams Should Monitor
Organizations should pay attention to:
Newly created privileged accounts
Unexpected remote access tools
Unusual PowerShell activity
Data encryption events
Ransomware notes
Suspicious file transfers
Communication with known malicious infrastructure
Threat intelligence platforms and sandbox environments can help analysts understand attacker behavior before damage spreads.
What Undercode Say:
The emergence of The Com represents a major evolution in the cybersecurity threat landscape.
For years, defenders separated cybercrime, terrorism, and online abuse into different categories.
That separation is becoming outdated.
Modern threat networks increasingly combine multiple forms of harm.
A teenager manipulated through an online platform may eventually become connected to criminal activity.
A ransomware attacker may use extremist communities for recruitment.
A violent ideology may spread through the same platforms used for gaming and entertainment.
The Com demonstrates how digital environments can become ecosystems where different threats reinforce each other.
The decentralized structure is one of the biggest challenges.
Traditional organizations can be disrupted by targeting leadership.
Decentralized networks survive because there is no single command center.
Removing one group does not automatically remove the entire movement.
Law enforcement agencies must therefore focus on intelligence sharing rather than isolated operations.
Project COMPASS is important because it recognizes that modern cyber threats are global problems.
A criminal operating online does not respect borders.
A victim in one country may be targeted by someone located thousands of kilometers away.
International cooperation is no longer optional.
It is a requirement.
Technology companies also have an important responsibility.
Platforms must improve detection systems, strengthen moderation, and create safer environments for vulnerable users.
Artificial intelligence may become increasingly valuable in identifying harmful behavior patterns before attacks happen.
However, technology alone cannot solve the problem.
Education remains one of the strongest defenses.
Young users need awareness about manipulation tactics, online grooming, and digital safety.
Businesses must also update their security strategies.
Cybersecurity teams should prepare for threats that combine technical attacks with psychological operations.
The future of cyber defense will require cooperation between governments, companies, researchers, and communities.
The Com is not simply another cybercrime group.
It represents a new type of hybrid threat.
The response must evolve at the same speed as the attackers.
✅ Fact: Europol is coordinating international efforts against The Com
Europol has confirmed multinational cooperation focused on investigating online extremist and criminal networks connected to The Com.
The involvement of multiple countries reflects the cross-border nature of the threat.
✅ Fact: The Com operates through decentralized online communities
Investigations have identified that these networks use social media, messaging platforms, gaming communities, and other digital spaces.
This decentralized structure makes traditional disruption methods more difficult.
✅ Fact: Project COMPASS focuses on information sharing and prevention
The initiative includes cooperation between law enforcement agencies, intelligence sharing, victim protection, and awareness campaigns.
⚠️ Fact: The full scale of The Com remains difficult to measure
Because members operate anonymously and across multiple platforms, investigators may only see part of the network.
The number of participants and connections may continue changing over time.
Prediction
(+1) International cooperation against decentralized cyber-extremist networks will continue expanding, and projects similar to COMPASS will become a standard model for fighting hybrid digital threats.
(+1) Security companies will increasingly develop AI-powered detection systems capable of identifying connections between cyberattacks, online manipulation, and extremist behavior.
(+1) Greater cooperation between governments and technology platforms could reduce recruitment opportunities for groups targeting minors.
(-1) Decentralized networks like The Com will remain difficult to eliminate completely because members can quickly rebuild communities after investigations and arrests.
(-1) Criminal groups may continue moving toward encrypted platforms and hidden online spaces, increasing the challenge for investigators.
(-1) The combination of cybercrime, exploitation, and extremist ideology may create more complex attacks that require stronger international security frameworks.
▶️ Related Video (76% Match):
🕵️📝Let’s dive deep and fact‑check.
🎓 Live Courses & Certifications:
Join Undercode Academy for Verified Certifications
🚀 Request a Custom Project:
Secure, high-velocity infrastructure and disruptive technological engineering. Contact our engineering team for high-tier development and proprietary systems:
[email protected]
💎 Smart Architecture | 🛡️ Secure by Design | ⭐ Trusted by Thousands
References:
Reported By: cyberpress.org
Extra Source Hub (Possible Sources for article):
https://www.reddit.com
Wikipedia
OpenAi & Undercode AI
Image Source:
Unsplash
Undercode AI DI v2
🔐JOIN OUR CYBER WORLD [ CVE News • HackMonitor • UndercodeNews ]
📢 Follow UndercodeNews & Stay Tuned:
𝕏 formerly Twitter 🐦 | @ Threads | 🔗 Linkedin | 🦋BlueSky | 🐘Mastodon | 📺Youtube




