Tag

#botnet

28 stories taggedbotnet.

Full-frame edge-to-edge overhead photoreal shot of a developer's dark wooden desk at night, a laptop screen glowing with abstract green code, a small physical h
Threat Intelligence

New Android malware slips into cars through the dashboard's own update system

Kaspersky says the DoFun head unit malware turns infected vehicles into ad-fraud engines and proxy relays for cybercrime.

4 min read
Aerial view, 16:9 framing, photoreal editorial style, a dense suburban neighbourhood at dusk with hundreds of softly glowing house windows, each window subtly e
Threat Intelligence

Zombie Cards, Cut Cables, and a Botnet: The Week's Cybercrime Stories You May Have Missed

A DDoS attack on encrypted messaging app Threema, a new Linux botnet called Evooo1Bot, and T-Mobile physically severing a cable to stop an intrusion all made news this week. Here is what happened.

3 min read
Dim editorial photograph of a developer workstation at night, screen showing a code editor with a redacted extension manifest, faint overlay of blockchain trans
Threat Intelligence

Researchers Say 14,500 Dahua Cameras Fell to a Six-Week Hijack Campaign

Hunt.io traced Operation CameraSwarm through an exposed 407 MB working directory, revealing password guessing, two authentication-bypass flaws, and a peer-to-peer relay trick.

4 min read
Full-frame edge-to-edge photoreal overhead shot of a tangle of consumer networking gear — a stacked home router, an IP camera, and a small Android set-top box —
Threat Intelligence

New Evooo1Bot malware is quietly turning home routers into criminal traffic relays

Researchers say the Mirai-based botnet has been hijacking gateway devices since July to sell as proxies, steal credentials, and launch attacks.

4 min read
Photoreal editorial shot of a darkened Dutch data center aisle with rows of rack-mounted servers, blue and amber status LEDs, evidence-tag style ribbon draped a
Threat Intelligence

New Kimwolf v7 Botnet Disguises DDoS Attacks as Normal Web Traffic

Palo Alto Networks says the upgraded Android and smart-device botnet hides its floods inside HTTP/2 sessions that look like ordinary browsing.

3 min read
Photoreal news-editorial shot of a generic black plastic Android TV streaming box on a dusty entertainment console, plugged into an HDMI cable and ethernet cabl
Threat Intelligence

Cheap TV streaming sticks are secretly clicking ads and pretending to be phones

Researchers say around 38,000 H96 Android TV boxes are pulling double duty as ad-fraud bots and residential proxies, funnelling roughly $50,000 a day to a mainland China outfit called the Fengwo Group.

4 min read
A young male hacker in handcuffs, with digital devices and a network diagram in the background
Threat Intelligence

Tengu Botnet Turns Linux Devices Against Their Own Defenders

A new Mirai spin-off reboots infected machines when responders try to shut it down, giving its persistence tricks another shot at survival.

3 min read
Photoreal editorial shot of a darkened Dutch data center aisle with rows of rack-mounted servers, blue and amber status LEDs, evidence-tag style ribbon draped a
Threat Intelligence

Dysphoria Botnet Rebuilds on Blockchain After March Takedown

Researchers at CNCERT and XLab say the IoT botnet now hides its control servers behind blockchain domains and routes traffic through infected devices, making shutdowns harder.

4 min read
Full-frame edge-to-edge photoreal news-editorial image of a dimly lit server rack in a data centre, one panel glowing with a soft green status light, faint blue
AI Security

NadMesh Botnet Is Quietly Raiding Unprotected AI Servers for Cloud Keys

A new Go-based botnet is scanning the internet for popular AI tools left exposed online, and its own dashboard brags about nearly 4,000 stolen Amazon cloud keys.

3 min read
Full-frame photoreal editorial image of a cluttered desk with a small home Wi-Fi router glowing faintly, tangled ethernet cables, a laptop screen showing lines
Threat Intelligence

A Botnet Author Asked an AI for Malware. The AI Left the Warning Label On.

Researchers found TuxBot v3 Evolution, a new IoT botnet whose creator appears to have copy-pasted AI-generated code, safety disclaimer and all.

4 min read
Photoreal editorial shot of a dim dental clinic reception at night, a single monitor glowing with an abstract terminal-style interface, empty chair, faint blue
AI Security

A Russian-speaking hacker turned Google's Gemini CLI into his botnet co-pilot

For roughly a year, an attacker chatted with Google's open-source AI tool to run malware on eight computers inside a dental clinic, migrate his servers, and troubleshoot bugs in six minutes flat.

4 min read
Photoreal editorial image, 16:9 full-frame edge-to-edge composition
Threat Intelligence

Fake Student Proxies on npm Turned Browsers Into a DDoS Weapon

Researchers at JFrog say 148 malicious packages used the npm registry as free hosting for a booby-trapped proxy site, quietly enlisting students' browsers into a two-week attack campaign in May.

3 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
AI Security

HalluSquatting: How AI Hallucinations Are Being Turned Into a Doorway for Malware

Security researchers have found a way to turn a known quirk of AI chatbots into a method for delivering malicious software directly to developers' computers, without hacking the AI itself.

3 min read
Full-frame edge-to-edge photoreal news-editorial image of a dimly lit living room with a wall-mounted smart TV glowing pale blue, a small black streaming box on
Threat Intelligence

Google and FBI cut off NetNut, a two-million-device botnet hidden inside smart TVs

The residential proxy service let hundreds of criminal and spy groups route attacks through ordinary homes.

4 min read
Aerial view, 16:9 framing, photoreal editorial style, a dense suburban neighbourhood at dusk with hundreds of softly glowing house windows, each window subtly e
Threat Intelligence

Google and FBI Shut Down NetNut, a Criminal Anonymity Network Built on Millions of Hijacked Home Devices

NetNut rented out access to infected home and business routers so criminals and foreign spies could hide their tracks. A joint operation has disrupted it.

3 min read
© 2026 Threat Vectr