Security News

Botnet fueling residential proxies disrupted in cybercrime crackdown
2024-11-19 15:34

The Ngioweb botnet, which supplies most of the 35,000 bots in the cybercriminal NSOCKS proxy service, is being disrupted as security companies block traffic to and from the two networks. [...]

Ngioweb Botnet Fuels NSOCKS Residential Proxy Network Exploiting IoT Devices
2024-11-19 14:01

The malware known as Ngioweb has been used to fuel a notorious residential proxy service called NSOCKS, as well as by other services such as VN5Socks and Shopsocks5, new findings from Lumen...

Botnet exploits GeoVision zero-day to install Mirai malware
2024-11-15 19:39

A malware botnet is exploiting a zero-day vulnerability in end-of-life GeoVision devices to compromise and recruit them for likely DDoS or cryptomining attacks. [...]

China's Volt Typhoon crew and its botnet surge back with a vengeance
2024-11-13 00:58

Ohm, for flux sake China's Volt Typhoon crew and its botnet are back, compromising old Cisco routers once again to break into critical infrastructure networks and kick off cyberattacks, according...

Volt Typhoon rebuilds malware botnet following FBI disruption
2024-11-12 15:49

The Chinese state-sponsored hacking group Volt Typhoon has begun to rebuild its "KV-Botnet" malware botnet after it was disrupted by law enforcement in January, according to researchers from...

AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud Services
2024-11-08 14:02

The threat actors behind the AndroxGh0st malware are now exploiting a broader set of security flaws impacting various internet-facing applications, while also deploying the Mozi botnet malware....

IoT Devices in Password-Spraying Botnet
2024-11-06 12:02

Microsoft is warning Azure cloud users that a Chinese controlled botnet is engaging in “highly evasive” password spraying. Not sure about the “highly evasive” part; the techniques seem basically...

Microsoft Warns of Chinese Botnet Exploiting Router Flaws for Credential Theft
2024-11-01 09:48

Microsoft has revealed that a Chinese threat actor it tracks as Storm-0940 is leveraging a botnet called Quad7 to orchestrate highly evasive password spray attacks. The tech giant has given the...

Microsoft: Chinese hackers use Quad7 botnet to steal credentials
2024-10-31 20:03

Microsoft warns that Chinese threat actors use the Quad7 botnet, compromised of hacked SOHO routers, to steal credentials in password-spray attacks. [...]

New Gorilla Botnet Launches Over 300,000 DDoS Attacks Across 100 Countries
2024-10-07 13:52

Cybersecurity researchers have discovered a new botnet malware family called Gorilla (aka GorillaBot) that is a variant of the leaked Mirai botnet source code. Cybersecurity firm NSFOCUS, which...