F
Feed Atlas
OPML directory + server-side RSS reader

krebsonsecurity.com

SiteRSSBlogs
Back

Latest posts

  • Who is the Kimwolf Botmaster “Dort”?
    Feb 28, 2026BrianKrebs

    In early January 2026, KrebsOnSecurity revealed how a security researcher disclosed a vulnerability that was used to assemble Kimwolf, the world's largest and most disruptive botnet. Since then, the person in control of Kimwolf -- who goes by the handle "Dort" -- has coordinated a barrage of distributed denial-of-service (DDoS), doxing and email flooding attacks against the researcher and this aut

  • ‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA
    Feb 20, 2026BrianKrebs

    Most phishing websites are little more than static copies of login pages for popular online destinations, and they are often quickly taken down by anti-abuse activists and security firms. But a stealthy new phishing-as-a-service offering lets customers sidestep both of these pitfalls: It uses cleverly disguised links to load the target brand's real website, and then acts as a relay between the tar

  • Kimwolf Botnet Swamps Anonymity Network I2P
    Feb 11, 2026BrianKrebs

    For the past week, the massive "Internet of Things" (IoT) botnet known as Kimwolf has been disrupting the The Invisible Internet Project (I2P), a decentralized, encrypted communications network designed to anonymize and secure online communications. I2P users started reporting disruptions in the network around the same time the Kimwolf botmasters began relying on it to evade takedown attempts agai

  • Patch Tuesday, February 2026 Edition
    Feb 10, 2026BrianKrebs

    Microsoft today released updates to fix more than 50 security holes in its Windows operating systems and other software, including patches for a whopping six "zero-day" vulnerabilities that attackers are already exploiting in the wild.

  • Please Don’t Feed the Scattered Lapsus ShinyHunters
    Feb 02, 2026BrianKrebs

    A prolific data ransom gang that calls itself Scattered Lapsus ShinyHunters (SLSH) has a distinctive playbook when it seeks to extort payment from victim firms: Harassing, threatening and even swatting executives and their families, all while notifying journalists and regulators… Read More »

  • Who Operates the Badbox 2.0 Botnet?
    Jan 26, 2026BrianKrebs

    The cybercriminals in control of Kimwolf -- a disruptive botnet that has infected more than 2 million devices -- recently shared a screenshot indicating they'd compromised the control panel for Badbox 2.0, a vast China-based botnet powered by malicious software that comes pre-installed on many Android TV streaming boxes. Both the FBI and Google say they are hunting for the people behind Badbox 2.0

  • Kimwolf Botnet Lurking in Corporate, Govt. Networks
    Jan 20, 2026BrianKrebs

    A new Internet-of-Things botnet called Kimwolf has spread to more than 2 million devices, forcing infected systems to participate in massive distributed denial-of-service (DDoS) attacks and to relay other malicious and abusive Internet traffic. Kimwolf's ability to scan the local networks of compromised systems for other IoT devices to infect makes it a sobering threat to organizations, and new re

  • Patch Tuesday, January 2026 Edition
    Jan 14, 2026BrianKrebs

    Microsoft today issued patches to plug at least 113 security holes in its various Windows operating systems and supported software. Eight of the vulnerabilities earned Microsoft's most-dire "critical" rating, and the company warns that attackers are already exploiting one of the bugs fixed today.

  • Who Benefited from the Aisuru and Kimwolf Botnets?
    Jan 08, 2026BrianKrebs

    Our first story of 2026 revealed how a destructive new botnet called Kimwolf rapidly grew to infect more than two million devices by mass-compromising a vast number of unofficial Android TV streaming boxes. Today, we'll dig through digital clues left behind by the hackers, network operators, and cybercrime services that appear to have benefitted from Kimwolf's spread.

  • The Kimwolf Botnet is Stalking Your Local Network
    Jan 02, 2026BrianKrebs

    The story you are reading is a series of scoops nestled inside a far more urgent Internet-wide security advisory. The vulnerability at issue has been exploited for months already, and it's time for a broader awareness of the threat. The short version is that everything you thought you knew about the security of the internal network behind your Internet router probably is now dangerously out of dat