SIEM as a Service
911 S5 Botnet Dismantled

911 S5 Botnet with 19 Million IP Addresses Dismantled & Admin Arrested

The U.S. Department of Justice (DOJ) announced the dismantling of the 911 S5 botnet, a massive network of compromised computers used for various illegal activities. The operation carried out in cooperation with international law enforcement...
Quad7 Botnet Operators Compromising Several Routers And VPN Appliances

Quad7 Botnet Operators Compromising Several Routers & VPN Appliances

The Quad7 botnet (aka 7777 botnet, xlogin botnet) has gained attention for its use of compromised TP-Link routers to conduct attacks on Microsoft 365 accounts.  This botnet primarily employs password-spraying techniques, which involve attempting to...
FBI Dismantled IPStorm and Botnet Infrastructure 

FBI Dismantled Notorious IPStorm Botnet Infrastructure 

The FBI has achieved a remarkable feat in the fight against cybercrime, dismantling the infamous IPStorm botnet network that infected tens of thousands of devices across various platforms worldwide.  The brains behind this criminal operation,...
Hackers Compromised 600,000 SOHO Routers Within 72 Hours For Botnet

Hackers Compromised 600,000 SOHO Routers Within 72 Hours For Botnet

Hackers often target the routers to take charge of network traffic, get hold of sensitive data, and attack attached devices. When a router is hacked, it can create a botnet for major cyber-attacks or send...
Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware

Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware

The Gafgyt malware (often referred to as Bashlite or Lizkebab) has expanded its attack scope by targeting publicly exposed Docker Remote API servers. Gafgyt malware, also known as Bashlite, and Mirai have targeted millions of...
1.6 Million Android TVs Worldwide Hacked

1.6 Million Android TVs Worldwide Hacked by Vo1d Botnet

A sophisticated botnet operation has compromised 1.6 million Android TV devices across 226 nations, leveraging advanced domain generation algorithms and cryptographic evasion techniques to create the largest known IoT threat since the 2016 Mirai...
 Session Smart Routers With Default Passwords Hacked By Mirai Malware

 Session Smart Routers With Default Passwords Hacked By Mirai Malware

Juniper Networks has issued an urgent advisory following reports of Mirai malware infections targeting Session Smart Routers (SSRs) left with default passwords. The campaign, first detected on December 11, exploited weak security practices to...
Hackers Advertising COVID Botnet Can bypass anti-DDoS systems

Hackers Advertising COVID Botnet Can bypass Anti-DDoS Systems

A new botnet named "COVID BOTNET" is being advertised on the dark web, claiming to target NATO servers and the broader Western digital infrastructure. The creators of this botnet are boasting about its ability...
Europol Starts Hunting For Emotet Malware Developer And Mastermind

Europol Starts Hunting For Emotet Malware Developer And Mastermind

The Europol-led Operation Endgame focuses on the individual threat actors operating behind the botnets. Cyberlaw enforcement is very dedicated to locating who created the once-powerful Emotet malware as a service; this creator is known only...
GoTitan Botnet Apache ActiveMQ

GoTitan Botnet Actively Exploiting Apache ActiveMQ Vulnerability

Attackers are exploiting the recently discovered critical security vulnerability tracked as (CVE-2023-46604) affecting Apache ActiveMQ to disseminate the Golang-based botnet GoTitan and the.NET application "PrCtrl Rat," which has the ability to be remotely controlled. Any...
SIEM as a Service

Recent Posts

CISA Threat Hunting Staff Censys & VirusTotal

CISA Warns Threat Hunting Staff to Stop Using Censys & VirusTotal

Hundreds of Cybersecurity and Infrastructure Security Agency (CISA) staff were notified this week that the organization is discontinuing critical cybersecurity tools used for threat...