Security researchers from Lumen’s Black Lotus have disrupted the ngioweb botnet after more than a year of investigation. By identifying the infrastructure and blocking data flow, the botnet and the NSOCKS proxy service it powered have been severely disrupted. The botnet, with over 35,000 compromised endpoints in 180 countries, was primarily used for malicious activities and as a proxy service for threat actors, including state-sponsored actors like APT28.
Full Article
Scattered Spider Hacker Arrests Halt Attacks, But Copycat Threats Sustain Security Pressure
Google Cloud's Mandiant Consulting has noted a decline in activity from the Scattered Spider group (UNC3944) following recent arrests in the U.K., highlighting the importance for organizations to strengthen their defenses during this period. Mandiant has not detected any new intrusions directly related to the group, urging proactive security measures. Want More Context? 🔎
Read more