A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads.
Security researchers have detailed a new Linux botnet that breaks into routers, cameras, video recorders and virtual private ...
Nozomi reports that Cling botnet uses STUN traffic to conceal command-and-control activity and attacks against vulnerable IoT ...
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle ...
Maritime security firm Cydome compared the images against 2023 photos of a different ship’s engine room and assessed them as ...
Windows botnet that can steal browser data, abuse paid AI credits, control devices and launch website attacks.
The PaperCut NG/MF exploitation campaign compromised 11 organizations in 26 seconds. Once the full operation launched, a single United States high school moved from initial access to full domain ...
Carbonato targets unauthenticated Docker daemons, installs Hermes Agent, and uses Telegram to run operator-directed ...
CARBONATO is a Docker-based botnet that utilizes an autonomous AI agent as its command-and-control (C2) engine rather than a static server. Discovered by ThreatDown researchers in August 2026, this is ...
The x47.c Windows botnet includes DDoS, credential theft, and SOCKS5 proxy capabilities and uses AI to maintain persistence.
ShinyHunters seizes Clop’s leak site, CARBONATO botnet hunts AI keys on Docker hosts, and infostealer exposure in the US water sector.
The infrastructure used in last year's largest internet attack did not sit in a server room. It was in living rooms, kitchens ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results