Security News > 2021 > January > Emotet botnet disrupted after global takedown operation

Emotet botnet disrupted after global takedown operation
2021-01-27 12:57

The infrastructure of today's most dangerous botnet built by cybercriminals using the Emotet malware was taken down following an international coordinated action coordinated by Europol and Eurojust.

The Emotet malware was first spotted as a banking Trojan in 2014 and it has evolved into a botnet used by the TA542 threat group to deploy second-stage malware payloads.

"The EMOTET infrastructure essentially acted as a primary door opener for computer systems on a global scale," Europol added.

Following a break of more than a month, the Emotet botnet was revived on December 21sts [1, 2], with Microsoft spotting a campaign delivering "a wide range of lures in massive volumes of emails, the use of fake replies or forwarded emails, password-protected archive attachments."

The highly active Trickbot botnet was also partially and temporarily disrupted following a joint operation in October 2020.

Bye-bye botnets Huge global operation brings down the world's most dangerous malware.


News URL

https://www.bleepingcomputer.com/news/security/emotet-botnet-disrupted-after-global-takedown-operation/