CrowdStrike and federal law enforcement have dismantled Sality, a Russia-based botnet that hijacked cryptocurrency payments by silently replacing copied wallet addresses. The operation isolated more than 15,000 infected machines and highlighted a simple but persistent threat facing Bitcoin and Ethereum users.