Nozomi reports that Cling botnet uses STUN traffic to conceal command-and-control activity and attacks against vulnerable IoT ...
ThreatDown discovered a Docker botnet that installs an unmodified open-source agent framework, overwrites its persona file, ...
Canto Incognito has infected over 3,400 servers, using exposed AI and LLM infrastructure for crypto mining and botnet growth.
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle ...
Security researchers have detailed a new Linux botnet that breaks into routers, cameras, video recorders and virtual private ...
The infrastructure used in last year's largest internet attack did not sit in a server room. It was in living rooms, kitchens ...
CARBONATO exploits exposed Docker daemons, installs an AI agent, steals API keys and spreads across networks with autonomous ...
Cling malware exploits vulnerable Realtek devices to build a botnet while disguising command traffic as Google STUN responses ...
Windows botnet that can steal browser data, abuse paid AI credits, control devices and launch website attacks.
The x47.c Windows botnet includes DDoS, credential theft, and SOCKS5 proxy capabilities and uses AI to maintain persistence.
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads.
Maritime security firm Cydome compared the images against 2023 photos of a different ship’s engine room and assessed them as ...