#botnet search results

Looks like this #Mirai threat actor is a BIG fan of our URLhaus platform 😜 👉 hXXp://45.141.215.196/FuckYou0urlhaus0abuse0ch/ We thought we'd send a little love back to the threat actor... their server’s been taken down, and their #botnet C2 domain is now sinkholed. 😘…

abuse_ch's tweet image. Looks like this #Mirai threat actor is a BIG fan of our URLhaus platform 😜 

👉 hXXp://45.141.215.196/FuckYou0urlhaus0abuse0ch/

We thought we'd send a little love back to the threat actor... their server’s been taken down, and their #botnet C2 domain is now sinkholed. 😘…

Luno: Linux botnet combining modular DDoS, stealthy crypto-mining, binary replacement & watchdog loops cyble.com/blog/lunobotne… #Linux #botnet

0xor0ne's tweet image. Luno: Linux botnet combining modular DDoS, stealthy crypto-mining, binary replacement & watchdog loops

cyble.com/blog/lunobotne…

#Linux #botnet
0xor0ne's tweet image. Luno: Linux botnet combining modular DDoS, stealthy crypto-mining, binary replacement & watchdog loops

cyble.com/blog/lunobotne…

#Linux #botnet

🙌 My request for the 14emeliaterracewestroxburyma02132 domain associated with the Aisuru #botnet to be terminated has been granted. This was the most visited domain on the Internet yesterday, far above #Google, #Facebook, #Microsoft, #Apple, and #Amazon

profdiggity's tweet image. 🙌 My request for the 14emeliaterracewestroxburyma02132 domain associated with the Aisuru #botnet to be terminated has been granted.

This was the most visited domain on the Internet yesterday, far above #Google, #Facebook, #Microsoft, #Apple, and #Amazon
profdiggity's tweet image. 🙌 My request for the 14emeliaterracewestroxburyma02132 domain associated with the Aisuru #botnet to be terminated has been granted.

This was the most visited domain on the Internet yesterday, far above #Google, #Facebook, #Microsoft, #Apple, and #Amazon
profdiggity's tweet image. 🙌 My request for the 14emeliaterracewestroxburyma02132 domain associated with the Aisuru #botnet to be terminated has been granted.

This was the most visited domain on the Internet yesterday, far above #Google, #Facebook, #Microsoft, #Apple, and #Amazon
profdiggity's tweet image. 🙌 My request for the 14emeliaterracewestroxburyma02132 domain associated with the Aisuru #botnet to be terminated has been granted.

This was the most visited domain on the Internet yesterday, far above #Google, #Facebook, #Microsoft, #Apple, and #Amazon

🚨 Ermac Banking #Botnet v3.0 Leak 🚨 A site distributing #Hackingtools allegedly shared Ermac Banking Botnet V3.0 — an evolved #Android trojan derived from Cerberus & Hook. It targets 700+ banking, shopping & crypto apps worldwide. #Cybercrime #Malware

cyberfeeddigest's tweet image. 🚨 Ermac Banking #Botnet v3.0 Leak 🚨

A site distributing #Hackingtools allegedly shared Ermac Banking Botnet V3.0 — an evolved #Android trojan derived from Cerberus & Hook. It targets 700+ banking, shopping & crypto apps worldwide.

#Cybercrime #Malware

🛑 DarkExploits Marketplace — #BOTNET, #Crypters, #Exploits, #Keyloggers & #RAT for Sale 🛑 A clearweb site hxxps://www[.]darkexploits[.]is/ is openly selling malicious tools, making it a notable source for #Malware analysts. ⚠️ Handle with extreme caution — potential legal &…

cyberfeeddigest's tweet image. 🛑 DarkExploits Marketplace — #BOTNET, #Crypters, #Exploits, #Keyloggers & #RAT for Sale 🛑

A clearweb site hxxps://www[.]darkexploits[.]is/ is openly selling malicious tools, making it a notable source for #Malware analysts.
⚠️ Handle with extreme caution — potential legal &…

🕷️ Underground Market Exposed: Clear Web Selling Cybercrime Tools A website openly offers #BOTNET, #Crypters, #Exploits, Keyloggers & #RAT tools 🚨 URL (DEFANGED): hxxps://www.darkexploits[.]is/product-category/rat/ #Cybercrime #Darkweb

cyberfeeddigest's tweet image. 🕷️ Underground Market Exposed: Clear Web Selling Cybercrime Tools

A website openly offers #BOTNET, #Crypters, #Exploits, Keyloggers & #RAT tools 🚨
URL (DEFANGED): hxxps://www.darkexploits[.]is/product-category/rat/
#Cybercrime #Darkweb

ShadowV2 Botnet Exploits Misconfigured AWS Docker Containers for DDoS-for-Hire Service dlvr.it/TNqlhp #Cybersecurity #DDoS #Botnet #AWS #Docker

blueteamsec1's tweet image. ShadowV2 Botnet Exploits Misconfigured AWS Docker Containers for DDoS-for-Hire Service dlvr.it/TNqlhp #Cybersecurity #DDoS #Botnet #AWS #Docker

🚨 22-year-old hacker behind ‘Rapper Bot’ ARRESTED! Botnet attacked Twitter/X, rented to extortionists & fueled fake influencer chaos. Impersonators exposed — perception manipulated at scale. The internet is NOT what it seems. #CyberCrime #Botnet #WakeUp

Davidxrplion0's tweet image. 🚨 22-year-old hacker behind ‘Rapper Bot’ ARRESTED! Botnet attacked Twitter/X, rented to extortionists & fueled fake influencer chaos. Impersonators exposed — perception manipulated at scale. The internet is NOT what it seems. #CyberCrime #Botnet #WakeUp

#Aisuru #Botnet leading the @Cloudflare Radar Domain Ranking (today still on rank 2, has been in the top 10 for several days now). Also on Rank 9 today: overload[.]su , potentially related. 60% of the traffic from the United States.

Gi7w0rm's tweet image. #Aisuru  #Botnet leading the @Cloudflare Radar Domain Ranking (today still on rank 2, has been in the top 10 for several days now).

Also on Rank 9 today: overload[.]su , potentially related.
60% of the traffic from the United States.

After our initial #PolarEdge #botnet write-up, we’re happy to announce the second part: “Defrosting PolarEdge’s Backdoor,” a full technical deep-dive into its TLS-based implant. blog.sekoia.io/polaredge-back…

sekoia_io's tweet image. After our initial #PolarEdge #botnet write-up, we’re happy to announce the second part: “Defrosting PolarEdge’s Backdoor,” a full technical deep-dive into its TLS-based implant.

blog.sekoia.io/polaredge-back…

🛒 Dark Market Drop: Full-Fledged #Malicious Toolkit Shop Online A clear web shop offering a wide arsenal of #Malicious tools: 🦠 #Botnet 🔐 #Crypters 🔥 #Burners 💻 #RAT 🕵️ #Stealer 💥 #Exploits & more. ⚠️ Handle with caution — high-risk intel for #Malware analysts. 🔗…

cyberfeeddigest's tweet image. 🛒 Dark Market Drop: Full-Fledged #Malicious Toolkit Shop Online

A clear web shop offering a wide arsenal of #Malicious tools:
🦠 #Botnet
🔐 #Crypters
🔥 #Burners
💻 #RAT
🕵️ #Stealer
💥 #Exploits & more.
⚠️ Handle with caution — high-risk intel for #Malware analysts.

🔗…

#KodeinBotnet advertises 400+ Gbps L4 attacks & 20M+ RPS at L7, a criminal DDoS-for-hire service. https[://www[.kodein[.cc @skocherhan @500mk500 @ViriBack #ThreatIntelligence #Botnet

Fact_Finder03's tweet image. #KodeinBotnet advertises 400+ Gbps L4 attacks & 20M+ RPS at L7,  a criminal DDoS-for-hire service.

https[://www[.kodein[.cc

@skocherhan
@500mk500
@ViriBack 

#ThreatIntelligence  #Botnet

🧪 'Poison Tools' Exposed – Clearweb Site Selling #RATs, #Stealers & More A clearweb site is openly offering #Botnet, #Ransomware, #Crypter, #Exploit kits, #SpammingTools & various versions of #CRAXRAT, #REDLINE. Site: hxxps://poisonsoftwares[.]com/ #CyberCrime #Malware

cyberfeeddigest's tweet image. 🧪 'Poison Tools' Exposed – Clearweb Site Selling #RATs, #Stealers & More

A clearweb site is openly offering #Botnet, #Ransomware, #Crypter, #Exploit kits, #SpammingTools & various versions of #CRAXRAT, #REDLINE.

Site: hxxps://poisonsoftwares[.]com/

#CyberCrime #Malware…

Cyble conducts a Deep Dive Analysis into LunoBotnet an actively evolving Linux botnet combining crypto-mining and DDoS with modular updates and monetization. cyble.com/blog/lunobotne… #Botnet #DDoS #Cryptomining #Malware #ThreatIntel

CybleInsights's tweet image. Cyble conducts a Deep Dive Analysis into LunoBotnet an actively evolving Linux botnet combining crypto-mining and DDoS with modular updates and monetization.

cyble.com/blog/lunobotne…

#Botnet #DDoS #Cryptomining #Malware #ThreatIntel

MystRodX: The Covert Dual-Mode Backdoor Threat #botnet blog.xlab.qianxin.com/mystrodx_cover…

blackorbird's tweet image. MystRodX: The Covert Dual-Mode Backdoor Threat #botnet
blog.xlab.qianxin.com/mystrodx_cover…

#BOTNET pues ya está, a jugar al sudoku todo el mundo 😂

BTshell's tweet image. #BOTNET pues ya está, a jugar al sudoku todo el mundo 😂
BTshell's tweet image. #BOTNET pues ya está, a jugar al sudoku todo el mundo 😂
BTshell's tweet image. #BOTNET pues ya está, a jugar al sudoku todo el mundo 😂

Alerta para contribuyentes de México y Chile. Botnet Fenix es una nueva amenaza digital. Se hace pasar por las autoridades fiscales como el SAT para robar información de usuarios y vulnerar redes. 🧵🤖

CycuraMX's tweet image. Alerta para contribuyentes de México y Chile. 

Botnet Fenix es una nueva amenaza digital. 

Se hace pasar por las autoridades fiscales como el SAT para robar información de usuarios y vulnerar redes. 

🧵🤖


Aisuru botnet faked high traffic to outrank major sites and attack Cloudflare’s DNS. krebsonsecurity.com/2025/11/cloudf… #Aisuru #botnet #cloudflare #dns #CyberSecurity #CybersecurityNews #threatresq


🛡️ Massive win! Cloudflare has successfully scrubbed the notorious Aisuru botnet from its top domains list, boosting internet safety for everyone. #CyberSecurity #Botnet krebsonsecurity.com/2025/11/cloudf…


🇺🇸 🚨 DEVELOPING: RondoDox botnet expands exploit arsenal by 650%, now targeting enterprise & IoT; FortiGuard first documented variant Sept 2024. Assess exposure & patch. stratint.ai/events/evt-dde… #Cybersecurity #Botnet #IoT


🔥 Speaker: Pedro Falé @zur4t How to Takeover a Botnet: In 5 mins Investigative mindset + abusing malware features → live 5-min takeover. Real case: ToxicPanda (banking malware; ~70% infections in PT). Nov 28–29 PT/EN · ~500 · bsidesporto.org #BSidesPorto #Botnet

bsidesporto's tweet image. 🔥 Speaker: Pedro Falé @zur4t 
How to Takeover a Botnet: In 5 mins
Investigative mindset + abusing malware features → live 5-min takeover. Real case: ToxicPanda (banking malware; ~70% infections in PT).
Nov 28–29 PT/EN · ~500 · bsidesporto.org #BSidesPorto #Botnet

🚨 The Aisuru Botnet has evolved! No longer just DDoS, it's now weaponizing residential IPs as proxies. Is your home internet part of the problem? Learn how this new tactic could impact you. #CyberSecurity #Botnet ⤵️


Fenix #botnet

🚨#Chile: El Servicio Agrícola y Ganadero, SAG, advierte a sus usuarios y usuarias que realizan trámites ante la institución sobre la detección de correos electrónicos maliciosos que suplantan fraudulentamente la identidad del Servicio. Estos mensajes informan sobre supuestos…



Massive bot wave flooding X under “Russia” — identical spam posts every second with wa,me links. OSINT folks: verify, archive & share. #OSINT #Disinfo #Botnet @WW3_Monitor @sentdefender @Osinttechnical @Osint613 @nexus_osint @OSINTWarfare @OSINTWarfare


Search for “Russia” on X right now and you’ll drown in thousands of sex-bot posts with WhatsApp links and copy-paste text. Classic search sabotage — real information buried under spam. #Russia #Disinformation #BotNet


Russland-Themen auf X kaum noch suchbar: Die „Russia“-Suche wird aktuell von tausenden Sex-Bot-Accounts mit WhatsApp-Links und Copy-Paste-Texten überschwemmt. Klassische Such-Sabotage – reale Infos gehen im Spam unter. #Russia #Disinformation #BotNet


DDoS Botnet Aisuru Blankets US ISPs in Record DDoS ift.tt/gLaVn7W #infosec #cybersecurity #botnet #DDoS

johnmcclure00's tweet image. DDoS Botnet Aisuru Blankets US ISPs in Record DDoS ift.tt/gLaVn7W #infosec #cybersecurity #botnet #DDoS

Botnets like Mirai & Mozi are exploiting PHP servers, IoT & cloud gateways. “PHP is a prime target due to misconfigurations & unpatched RCEs,” ~ Xcape’s Noelle Murata. Act fast or risk weaponized infrastructure >> scworld.com/news/botnets-d… #Botnet #IoT #CloudSecurity #XcapeInsights

XcapeInc's tweet image. Botnets like Mirai & Mozi are exploiting PHP servers, IoT & cloud gateways. “PHP is a prime target due to misconfigurations & unpatched RCEs,” ~ Xcape’s Noelle Murata. Act fast or risk weaponized infrastructure >> scworld.com/news/botnets-d…
#Botnet #IoT #CloudSecurity #XcapeInsights

Joker (IRATA/COPYBARA) #Android banking #botnet is still active. It has been observed that they are making changes to the botnet panel. Additionally, it appears that they are now targeting #Russia, a country they had not previously targeted. C2: hxxp://80[.]251.153.96/ md5:…

0x6rss's tweet image. Joker (IRATA/COPYBARA) #Android banking #botnet is still active. It has been observed that they are making changes to the botnet panel. Additionally, it appears that they are now targeting #Russia, a country they had not previously targeted.

C2: hxxp://80[.]251.153.96/
md5:…
0x6rss's tweet image. Joker (IRATA/COPYBARA) #Android banking #botnet is still active. It has been observed that they are making changes to the botnet panel. Additionally, it appears that they are now targeting #Russia, a country they had not previously targeted.

C2: hxxp://80[.]251.153.96/
md5:…
0x6rss's tweet image. Joker (IRATA/COPYBARA) #Android banking #botnet is still active. It has been observed that they are making changes to the botnet panel. Additionally, it appears that they are now targeting #Russia, a country they had not previously targeted.

C2: hxxp://80[.]251.153.96/
md5:…
0x6rss's tweet image. Joker (IRATA/COPYBARA) #Android banking #botnet is still active. It has been observed that they are making changes to the botnet panel. Additionally, it appears that they are now targeting #Russia, a country they had not previously targeted.

C2: hxxp://80[.]251.153.96/
md5:…

#mirai #botnet 💣69.165.74.77💣💣47.120.60.228💣 Files: -x86 -arm -mpsl -mips -x86_64 -debug.dbg

RacWatchin8872's tweet image. #mirai #botnet
💣69.165.74.77💣💣47.120.60.228💣
Files:
-x86
-arm
-mpsl
-mips
-x86_64
-debug.dbg

Luno: Linux botnet combining modular DDoS, stealthy crypto-mining, binary replacement & watchdog loops cyble.com/blog/lunobotne… #Linux #botnet

0xor0ne's tweet image. Luno: Linux botnet combining modular DDoS, stealthy crypto-mining, binary replacement & watchdog loops

cyble.com/blog/lunobotne…

#Linux #botnet
0xor0ne's tweet image. Luno: Linux botnet combining modular DDoS, stealthy crypto-mining, binary replacement & watchdog loops

cyble.com/blog/lunobotne…

#Linux #botnet

94.156.71.]55 seems to be hosting files related to #mirai #botnet provider Limenet IP resolves to cyberbotne.stresse[.]live Using @ValidinLLC to pivot on base domain, I came across another IP 94.156.66[.]191 which previously had the website title StressLand :: Best IP Stresser

raghav127001's tweet image. 94.156.71.]55 seems to be hosting files related to #mirai #botnet provider Limenet 
IP resolves to cyberbotne.stresse[.]live
Using @ValidinLLC  to pivot on base domain, I came across another IP 
94.156.66[.]191 which previously had the website title StressLand :: Best IP Stresser
raghav127001's tweet image. 94.156.71.]55 seems to be hosting files related to #mirai #botnet provider Limenet 
IP resolves to cyberbotne.stresse[.]live
Using @ValidinLLC  to pivot on base domain, I came across another IP 
94.156.66[.]191 which previously had the website title StressLand :: Best IP Stresser
raghav127001's tweet image. 94.156.71.]55 seems to be hosting files related to #mirai #botnet provider Limenet 
IP resolves to cyberbotne.stresse[.]live
Using @ValidinLLC  to pivot on base domain, I came across another IP 
94.156.66[.]191 which previously had the website title StressLand :: Best IP Stresser
raghav127001's tweet image. 94.156.71.]55 seems to be hosting files related to #mirai #botnet provider Limenet 
IP resolves to cyberbotne.stresse[.]live
Using @ValidinLLC  to pivot on base domain, I came across another IP 
94.156.66[.]191 which previously had the website title StressLand :: Best IP Stresser

Looks like this #Mirai threat actor is a BIG fan of our URLhaus platform 😜 👉 hXXp://45.141.215.196/FuckYou0urlhaus0abuse0ch/ We thought we'd send a little love back to the threat actor... their server’s been taken down, and their #botnet C2 domain is now sinkholed. 😘…

abuse_ch's tweet image. Looks like this #Mirai threat actor is a BIG fan of our URLhaus platform 😜 

👉 hXXp://45.141.215.196/FuckYou0urlhaus0abuse0ch/

We thought we'd send a little love back to the threat actor... their server’s been taken down, and their #botnet C2 domain is now sinkholed. 😘…

#KodeinBotnet advertises 400+ Gbps L4 attacks & 20M+ RPS at L7, a criminal DDoS-for-hire service. https[://www[.kodein[.cc @skocherhan @500mk500 @ViriBack #ThreatIntelligence #Botnet

Fact_Finder03's tweet image. #KodeinBotnet advertises 400+ Gbps L4 attacks & 20M+ RPS at L7,  a criminal DDoS-for-hire service.

https[://www[.kodein[.cc

@skocherhan
@500mk500
@ViriBack 

#ThreatIntelligence  #Botnet

Andromeda #BOTNET (Downloader)

TEAkolik's tweet image. Andromeda #BOTNET (Downloader)
TEAkolik's tweet image. Andromeda #BOTNET (Downloader)
TEAkolik's tweet image. Andromeda #BOTNET (Downloader)

The Scarab Botnet Panel and BlackNet Botnet were discovered by @JustWantToQ1 in FOFA.🧟‍♂️ Query: icon_hash="-1309140882" || icon_hash="-1118063833" Link🔗: en.fofa.info/result?qbase64… #cybersecurity #OSINT #Botnet #FOFA

fofabot's tweet image. The Scarab Botnet Panel and BlackNet Botnet were discovered by @JustWantToQ1 in FOFA.🧟‍♂️

Query: icon_hash="-1309140882" || icon_hash="-1118063833"

Link🔗: en.fofa.info/result?qbase64…

#cybersecurity #OSINT #Botnet #FOFA

This Tools Using #BotNet Dont Use Ilegal Activity with this Tools, dont attack Government and Education We are not responsible for the misuse of these tools These tools are used as test tools for websites Executor #ddos

BTshell's tweet image. This Tools Using #BotNet 
Dont Use Ilegal Activity with this Tools, dont attack Government and Education 
We are not responsible for the misuse of these tools 
These tools are used as test tools for websites 
Executor #ddos

🚨#Opendir #botnet🚨 http://176.113.115.7/files/ ⚠️#Redline #Stealer ☣️C2C hosting with several pieces of malware per folder. 🔥#Bulletproof Hosting CATTECHNOLOGIES-AS, HK (AS57678)

ShanHolo's tweet image. 🚨#Opendir #botnet🚨

http://176.113.115.7/files/ 
⚠️#Redline #Stealer 
☣️C2C hosting with several pieces of malware per folder. 
🔥#Bulletproof Hosting CATTECHNOLOGIES-AS, HK (AS57678)
ShanHolo's tweet image. 🚨#Opendir #botnet🚨

http://176.113.115.7/files/ 
⚠️#Redline #Stealer 
☣️C2C hosting with several pieces of malware per folder. 
🔥#Bulletproof Hosting CATTECHNOLOGIES-AS, HK (AS57678)
ShanHolo's tweet image. 🚨#Opendir #botnet🚨

http://176.113.115.7/files/ 
⚠️#Redline #Stealer 
☣️C2C hosting with several pieces of malware per folder. 
🔥#Bulletproof Hosting CATTECHNOLOGIES-AS, HK (AS57678)

#mirai #botnet 💣93.123.85.197💣 Back sharing mirai botnet files -arm5 -arm6 -arm -arm7 -mips -mpsl -ppc -sh4 -spc -x86 -x86_64 -m68k urlhaus.abuse.ch/host/93.123.85…

RacWatchin8872's tweet image. #mirai #botnet
💣93.123.85.197💣
Back sharing mirai botnet files
-arm5
-arm6
-arm
-arm7
-mips
-mpsl
-ppc
-sh4
-spc
-x86
-x86_64
-m68k
urlhaus.abuse.ch/host/93.123.85…

🚨 Ermac Banking #Botnet v3.0 Leak 🚨 A site distributing #Hackingtools allegedly shared Ermac Banking Botnet V3.0 — an evolved #Android trojan derived from Cerberus & Hook. It targets 700+ banking, shopping & crypto apps worldwide. #Cybercrime #Malware

cyberfeeddigest's tweet image. 🚨 Ermac Banking #Botnet v3.0 Leak 🚨

A site distributing #Hackingtools allegedly shared Ermac Banking Botnet V3.0 — an evolved #Android trojan derived from Cerberus & Hook. It targets 700+ banking, shopping & crypto apps worldwide.

#Cybercrime #Malware

🕷️ Underground Market Exposed: Clear Web Selling Cybercrime Tools A website openly offers #BOTNET, #Crypters, #Exploits, Keyloggers & #RAT tools 🚨 URL (DEFANGED): hxxps://www.darkexploits[.]is/product-category/rat/ #Cybercrime #Darkweb

cyberfeeddigest's tweet image. 🕷️ Underground Market Exposed: Clear Web Selling Cybercrime Tools

A website openly offers #BOTNET, #Crypters, #Exploits, Keyloggers & #RAT tools 🚨
URL (DEFANGED): hxxps://www.darkexploits[.]is/product-category/rat/
#Cybercrime #Darkweb

Loading...

Something went wrong.


Something went wrong.


United States Trends