Nation-State US Disrupts ‘Raptor Train’ Botnet of Chinese APT Flax Typhoon The US government has announced the disruption of Raptor Train, a Flax Typhoon botnet powered by hacked consumer devices. Eduard Kovacs12 hours ago
Malware & Threats Chinese Spies Built Massive Botnet of IoT Devices to Target US, Taiwan Military Black Lotus Labs estimates that more than 200,000 routers, network-attached storage servers, and IP cameras have been ensnared in the botnet. Ryan Naraine1 day ago
Malware & Threats Recent Zyxel NAS Vulnerability Exploited by Botnet A Mirai-like botnet has started exploiting a critical-severity vulnerability in discontinued Zyxel NAS products. Ionut ArghireJune 25, 2024
Malware & Threats Mysterious Threat Actor Used Chalubo Malware to Brick 600,000 Routers Over 600,000 SOHO routers belonging to a single ISP and infected with the Chalubo trojan were rendered inoperable. Ionut ArghireMay 31, 2024
Malware & Threats Massive 911 S5 Botnet Dismantled, Chinese Mastermind Arrested The US announced that the 911 S5 (Cloud Router) botnet, likely the world’s largest, has been dismantled and its administrator arrested. Eduard KovacsMay 30, 2024
Cybercrime US Sanctions Three Chinese Men for Operating 911 S5 Botnet The US government has announced sanctions against three Chinese nationals accused of creating and operating the 911 S5 proxy botnet. Eduard KovacsMay 29, 2024
Malware & Threats 400,000 Linux Servers Hit by Ebury Botnet The Ebury Linux botnet has ensnared over 400,000 Linux systems in 15 years, with roughly 100,000 still infected. Ionut ArghireMay 15, 2024
Cybercrime Botnet Disrupted by FBI Still Used by Russian Spies, Cybercriminals A botnet dismantled in January and used by Russia-linked APT28 consisted of more than just Ubiquiti Edge OS routers. Ionut ArghireMay 3, 2024
IoT Security Researchers Discover 40,000-Strong EOL Router, IoT Botnet Malware hunters sound an alarm after discovering a 40,000-strong botnet packed with end-of-life routers and IoT devices being used in cybercriminal activities. Ryan NaraineMarch 26, 2024
Malware & Threats US Government Urges Cleanup of Routers Infected by Russia’s APT28 The US government says Russia’s APT28 group compromised Ubiquiti EdgeRouters to run cyberespionage operations worldwide. Ionut ArghireFebruary 28, 2024
IoT Security Were 3 Million Toothbrushes Really Used for a DDoS Attack? Three million electric toothbrushes were reportedly used for disruptive DDoS attacks, but cybersecurity experts questioned the claims. Eduard KovacsFebruary 8, 2024
Malware & Threats Hitron DVR Zero-Day Vulnerabilities Exploited by InfectedSlurs Botnet Akamai flags six zero-day vulnerabilities in Hitron DVRs exploited to ensnare devices in the InfectedSlurs botnet. Ionut ArghireJanuary 31, 2024