Callum Dare, a 26-year-old man from Talbot Green, Wales, was sentenced to two years and three months in prison after admitting he encouraged and assisted swatting attacks linked to the dark-web doxing platform Doxbin. Investigators said Dare used Doxbin’s #deadnet channel to egg on attackers, help identify targets, and circulate edited montage videos showing armed police and emergency responses to hoax incidents in the United Kingdom, United States, and Canada. Authorities tied him to incidents including a nail-bomb hoax in Cardiff and a bomb threat involving a University of California lecture theatre, even though he did not personally place the false emergency calls.
The case began after the FBI passed intelligence to South Wales Police and the Tarian Regional Organised Crime Unit, which identified Dare through digital evidence, chat logs, and a PayPal account. Dare pleaded guilty to encouraging or assisting malicious communications and to possessing articles for use in fraud after police found a phishing kit known as "The Man in the Onion" on his devices, although investigators said there was no evidence it had been deployed in a real-world attack. The prosecution highlights that people who facilitate or promote swatting online can face criminal penalties even without making the hoax reports themselves.

See the reporting duties and controls this puts on the clock.
5 events from the most recent confirmed update back to the earliest known activity.
Callum Dare was sentenced to two years and three months in prison for encouraging and assisting swatting attacks linked to Doxbin across the United Kingdom, United States, and Canada.
Dare pleaded guilty to encouraging or assisting malicious communications and possession of articles for use in frauds in connection with his support for swatting activity and the phishing kit found on his devices.
During the investigation, police found a phishing kit called "The Man in the Onion" on Dare's devices, resulting in an additional fraud-related charge, though no evidence showed it had been used in real-world attacks.
Authorities tied Callum Dare, identified as a Doxbin administrator, to the platform's related chat activity and multiple swatting incidents in the UK, US, and Canada using digital evidence, chat logs, and a PayPal account.
In 2019, the FBI contacted South Wales Police and the Tarian Regional Organised Crime Unit, triggering an investigation into swatting activity linked to Doxbin.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
5 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcemalware.news
Open sourcedarkwebinformer.com
Open sourcetheregister.com
Open sourcecps.gov.uk
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.