Botnet

Dysphoria Maps 155 Router Ports to Turn Infected Devices Into C2 Proxies

Cybersecurity researchers at XLAB have tracked a fast-growing botnet family called Dysphoria since the first quarter of 2026. The botnet reportedly controls more than...

Operation STANDOFF Disables Windows Defender and Installs Persistent Fake csrss.exe

Researchers have uncovered Operation STANDOFF, a Russian-speaking cybercrime campaign that uses a pay-per-install loader to disable Microsoft Defender, deploy several malware families, and establish...

New Attack Framework Harvests WiFi Passwords and Launches Network Flooding Attacks

A newly uncovered Telegram-controlled attack framework, dubbed NULLZEREPTOOL, combines a functional DDoS engine with code for WiFi password extraction, wireless disruption, proxy rotation, and...

NadMesh Botnet Targets AI and MCP Servers With 20+ Remote Code Execution Vectors

Discovered in early July 2026, NadMesh identifies itself in code as “n4d mesh controller” and operates as a long‑lived, iteratively developed botnet rather than...

New IoT Botnet Uses 1,496 Default Passwords and Seven Persistence Mechanisms

Security researchers have uncovered TuxBot v3 Evolution, a modular IoT botnet framework built to compromise internet-exposed devices, maintain long-term access, and launch distributed denial-of-service...

Popular

Subscribe