Tag

#botnet

28 stories taggedbotnet · page 2 of 2.

Full-frame edge-to-edge overhead photoreal view of a suburban neighbourhood at dusk with faint blue network light traces emanating from individual houses and co
Threat Intelligence

Google and FBI Kneecap NetNut, Cutting Millions of Home Devices From Proxy Pool

Google's Threat Intelligence Group says a joint operation with the FBI and Lumen has stripped millions of infected home devices from NetNut, also tracked as Popa.

3 min read
Threat Intelligence

RustDuck: A Rust-Based DDoS Botnet Quietly Building Out Since February

XLab researchers say the two-stage loader is iterating faster than its install base is growing — and that's the interesting part.

2 min read
Threat Intelligence

Weekly Threat Roundup: EDR Killers, Browser Bugs, and an Android Trojan With Too Many Hands

Another week of recycled tradecraft — abused integrations, poisoned WordPress, and ransomware crews still gunning for endpoint sensors.

3 min read
Policy & Regulation

CSIS Got a Warrant to Reach Into Canadian Routers and Kill Two Botnets

A Federal Court ruling unsealed June 15 is the first public use of CSIS threat-reduction warrant powers against infected infrastructure on Canadian soil.

2 min read
Threat Intelligence

AryStinger Quietly Conscripts 4,300 Old Routers Into a Recon Proxy Fabric

Researchers say the malware skips the usual DDoS playbook and instead builds infrastructure for pre-breach reconnaissance.

3 min read
Vulnerabilities

Briefing: Apple Fixes Beats Bug, GCP Config Connector Flaw Enables Account Takeover, Velvet Ant's Decade in the Shadows

A Bluetooth eavesdropping patch, a quietly dangerous GCP misconfiguration vulnerability, and a threat actor that spent ten years undetected — here's what you may have missed.

2 min read
Threat Intelligence

The Popa Botnet: When Your $40 Streaming Box Moonlights as a Residential Proxy

Researchers tie a four-year-old Android TV box botnet to NetNut, the residential proxy arm of NASDAQ-listed Alarum Technologies. The company disputes the framing.

3 min read
Threat Intelligence

JDY Botnet Turns 1,500 Compromised SOHO Devices Into a Nation-State Targeting Engine

Lumen's Black Lotus Labs links the scanning network to Volt Typhoon. The threat isn't the botnet itself — it's the reconnaissance data it harvests before you've even read the CVE advisory.

2 min read
Threat Intelligence

Dutch Police Take Down C2 Infrastructure Behind 17-Million-Device Botnet

Authorities in the Netherlands seized command-and-control servers powering a botnet spanning infected computers, phones, and tablets — infrastructure allegedly rented out as a residential proxy network for criminal operations.

2 min read
Threat Intelligence

Dutch Police Pull the Plug on 17-Million-Device Botnet Run Through 200+ NL Servers

Politie and NCSC seized command infrastructure hosted on Dutch soil, dismantling a network that pulled in PCs, phones, tablets and IoT gear at scale.

3 min read
Threat Intelligence

Glassworm's blockchain command channel went down. Nobody will say who pulled the plug.

Researchers say the developer-targeting botnet is offline after its Solana and BitTorrent DHT C2 was disrupted. The mechanics of the takedown, and who authorised it, remain unexplained.

3 min read
Policy & Regulation

Justice Department Charges Ottawa Man With Operating Kimwolf DDoS Botnet

Federal prosecutors say Jacob Butler, 23, developed and rented out a variant of the AISURU botnet for paid denial-of-service attacks.

2 min read
Threat Intelligence

The Firewall Guard Was Holding a Crowbar: Brazilian DDoS-Protection Firm Caught Powering the Attacks

Exposed archive ties Huge Networks infrastructure and its CEO's SSH keys to a long-running Mirai botnet hammering Brazilian ISPs. The CEO blames a competitor.

3 min read
© 2026 Threat Vectr