← Back
MalwareHelp Net Security·15 minutes ago

Global sinkhole operation ends Sality botnet’s 23-year run

A coordinated law enforcement operation supported by CrowdStrike and the Shadowserver Foundation has successfully sinkholed Sality, a long-running peer-to-peer botnet that infected over 15,000 machines globally since its emergence in 2003. The operation severed the botnet operators' control over all remaining infected systems, ending more than two decades of malicious activity. Sality originally propagated as a file-infecting virus that attached itself to executable programs before evolving into a widespread botnet threat.

Read full article at Help Net Security

Related Articles

MalwareThe Hacker News·2 hours ago

Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads

The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a coordinated law enforcement operation. The effort was undertaken on August 31, 2026, by authorities from the U.S., Bulgaria, Hungary, and Romania, in collaboration with private industry partners CrowdStrike and the Shadowserver Foundation. To that

MalwareThe Hacker News·15 hours ago

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

A financially motivated threat actor tracked as Breeze Comet (previously UNC5669) has been targeting Brazilian financial services, retail, and e-commerce organizations since 2024 by exploiting payment systems and banking software to execute fraudulent transactions. According to Google's Threat Intelligence Group and Mandiant, the group specializes in manipulating payment infrastructure to conduct unauthorized transfers across Brazilian financial networks. This campaign represents a sustained effort against Brazil's critical financial ecosystem with a focus on direct financial fraud rather than data theft.

MalwareMalwarebytes Labs·17 hours ago

Fake GTA 6 leaked copy drains your crypto wallet

Cybercriminals are distributing a fraudulent GTA 6 leak that contains malware designed to drain cryptocurrency wallets, steal tokens, and pilfer NFTs from unsuspecting users seeking early access to the game. The scam exploits the high anticipation around the upcoming title to lure victims into downloading malicious files.