Security researchers from Lumen’s Black Lotus have disrupted the ngioweb botnet after more than a year of investigation. By identifying the infrastructure and blocking data flow, the botnet and the NSOCKS proxy service it powered have been severely disrupted. The botnet, with over 35,000 compromised endpoints in 180 countries, was primarily used for malicious activities and as a proxy service for threat actors, including state-sponsored actors like APT28.
Full Article
