#SocksEscort
אירופול ומספר שותפים בינלאומיים מפריעים לשירות הפרוקסי 'SocksEscort'

https://khesef.xyz/posts/937A9AFB-8239-4510-A02C-2ABB04E71F69
July 24, 2026 at 11:44 AM
欧洲刑警组织与国际合作伙伴联合打击"SocksEscort"代理服务:网络犯罪的全球性威胁与应对策略

https://qian.cx/posts/C0854A0D-D55A-490C-9140-57F982AED315
July 24, 2026 at 11:29 AM
Европол и международные партнеры ликвидируют сервис прокси-услуг 'SocksEscort'

https://kripta.biz/posts/B048CF43-F85A-414E-9E33-F8D212AC540F
July 24, 2026 at 11:29 AM
Démantèlements de proxys résidentiels : au tour de NetNut | LeMagIT www.lemagit.fr/actualites/3...
par @valerymarchive.bsky.social , Rédacteur en chef
Démantèlements de proxys résidentiels : au tour de NetNut | LeMagIT
Le réseau de proxys résidentiels NetNut n’est plus. Après SocksEscort et Ipidea, c’est le troisième qui tombe depuis le début de l’année.
www.lemagit.fr
July 9, 2026 at 11:10 AM
Proxys résidentiels (NetNut, SocksEscort) : comment les experts démantèlent ces réseaux masquant les connexions domestiques ? 🌐 Découvrez les stratégies de lutte internationale en cybersécurité. 🛡️ [lire]
July 7, 2026 at 3:35 AM
Démantèlements de proxys résidentiels : au tour de NetNut
Démantèlements de proxys résidentiels : au tour de NetNut | LeMagIT
Le réseau de proxies résidentiels NetNut n'est plus. Après SocksEscort et Ipidea, c'est le troisième qui tombe depuis le début de l'année.
www.lemagit.fr
July 6, 2026 at 5:20 PM
🟢 US authorities shut down SocksEscort service that sold residential proxies

🗨️ Law enforcement authorities in the US and Europe, together with partners from the private sector, have shut down…

#news
US authorities shut down SocksEscort service that sold residential proxies
Read more
hackmag.com
April 5, 2026 at 5:40 AM
📢 AVrecon : le FBI démantèle SocksEscort et alerte sur un malware ciblant les routeurs SOHO
📝 ## 🌐 Contexte

Publié le 2 avril 2026 sur The Cyber Ex…
https://cyberveille.ch/posts/2026-04-02-avrecon-le-fbi-demantele-socksescort-et-alerte-sur-un-malware-ciblant-les-routeurs-soho/ #AVrecon #Cyberveille
April 2, 2026 at 11:30 PM
FBI alerts to AVrecon malware targeting 1,200+ router models worldwide by exploiting RCE, command injection, and SOAP flaws. Linked to SocksEscort proxy service used in banking and ad fraud across 163 countries. #AVrecon #SocksEscort #USA
FBI Warns of AVrecon Malware Targeting Network Devices Across 163 Countries
AVrecon is a modular router-targeting malware that scans for exposed services and exploits RCE, command injection, and SOAP flaws to convert home and SOHO routers into proxy nodes. Law enforcement linked AVrecon to the SocksEscort residential proxy service, which sold access to roughly 369,000 compromised devices used for banking fraud, ad...
www.hendryadrian.com
April 2, 2026 at 3:40 PM
FBI Issues Critical Warning: AVrecon Malware Threatens Thousands of Routers and IoT Devices

In a recent FBI FLASH alert, cybersecurity authorities have revealed an alarming surge in AVrecon malware targeting routers and IoT devices worldwide. This malicious software, actively deployed by the…
FBI Issues Critical Warning: AVrecon Malware Threatens Thousands of Routers and IoT Devices
In a recent FBI FLASH alert, cybersecurity authorities have revealed an alarming surge in AVrecon malware targeting routers and IoT devices worldwide. This malicious software, actively deployed by the SocksEscort network, is compromising home and small-office devices, turning them into part of a massive residential proxy network. Experts are warning that unpatched or end-of-life devices are particularly vulnerable, raising urgent security concerns for both individuals and organizations.
undercodenews.com
April 1, 2026 at 4:14 AM
US, Europol disrupt SocksEscort network that exploited thousands of residential routers
US, Europol disrupt SocksEscort network that exploited thousands of residential routers
The SocksEscort proxy network allowed cybercriminals to purchase access to routers infected with malware, which they used to conceal their location and IP addresses.
buff.ly
March 26, 2026 at 8:56 AM
On the latest episode of Safe Mode, @gregotto.bsky.social sits down with Chris Formosa to break down the Socksescort disruption—a proxy botnet powered by AVRecon that compromised edge devices at scale. www.youtube.com/watch?v=R0Jc... | www.youtube.com/watch?v=YxtB...
Chris Formosa breaks down the Socksescort disruption
YouTube video by CyberScoop
www.youtube.com
March 25, 2026 at 11:57 PM
Global Law Enforcement Disrupts SocksEscort Proxy Network Powered by AVRecon Malware #Botnet #Botnetattack #CyberSecurity
Global Law Enforcement Disrupts SocksEscort Proxy Network Powered by AVRecon Malware
 Federal and regional police units, working alongside independent digital security experts, took down the SocksEscort hacking infrastructure. This setup used hacked gateway gadgets - infected by AVRecon - to route illicit online traffic through hidden channels.  A team at Black Lotus Labs, under Lumen Technologies, aided the takedown operation together with officials from the U.S. Department of Justice. Over multiple years, authorities found the proxy system kept around twenty thousand compromised gadgets active weekly - revealing both reach and staying power.  SocksEscort first came into view back in 2023, though signs point to activity stretching well beyond ten years. Operation relied on offering entry to seemingly legitimate IP addresses - pulled from home and office network devices. Because these connections appeared ordinary, users could mask malicious data flows under normal ISP cover. Detection tools often failed, misled by the everyday digital footprint left behind.  By early 2026, authorities reported the system had provided entry to vast numbers of IP addresses across its lifespan. Nearly 8,000 compromised routers remained operational at that point. Within the U.S., roughly a quarter of those devices were found scattered throughout the country. Though focused on one case, the ripple effects touched various forms of monetary misconduct.  A trail led authorities to connect SocksEscort with nearly $1 million siphoned from digital wallets belonging to someone in New York. Separate findings showed about $700,000 lost due to deceptive schemes targeting an industrial company based in Pennsylvania. Victims among American military personnel also faced damage after personal banking records were breached, adding further strain.  Dozens of domains and servers linked to the network were seized across Europe through joint efforts steered by Europol. Backing came from law enforcement agencies in Austria, France, and the Netherlands. Around $3.5 million in digital currency was blocked during the course of the mission. What powered the entire operation was AVRecon, a form of malicious software aimed at Linux-run home and small office routers.  By June 2023, it had taken hold on over seventy thousand machines, forming a vast network of hijacked devices. This network served one purpose: strengthening the reach of SocksEscort. Analysts found something unusual - none of the affected IPs showed up in unrelated botnet activity, pointing toward tightly managed usage. Despite setbacks during early 2023 that briefly disrupted operations through severed command channels, the group managed recovery by reconstructing systems. Control returned via decentralized nodes rather than a single hub. Activity restarted months afterward with modified communication pathways.  Early in 2025, more than 280,000 distinct IP addresses got caught up in the activity. Although infections spread globally, those based in the U.S. and the U.K. stood out - due to their appeal in hiding harmful network behavior. Outdated routers should be swapped out, many professionals suggest. Firmware updates come next on the list for staying protected. Default login details? Better revise them promptly. Remote functions that go unused tend to invite trouble - shutting those off helps block intrusions. Reducing exposure often begins with these small shifts.  A single operation reveals how digital crime groups using hidden relay systems are expanding their reach. Global teamwork across borders proves essential to weaken such operations.
dlvr.it
March 23, 2026 at 3:44 PM
📰 Europol and international partners disrupt ‘SocksEscort’ proxy service
On 11 March 2026, Europol in collaboration with law enforcement agencies from Austria, France, the Netherlands, and the United States, alongside Euroj...

#World #Europe #Trending #News
Europol and international partners disrupt ‘SocksEscort’ proxy service – Joint operation targeted ma
On 11 March 2026, Europol in collaboration with law enforcement agencies from Austria, France, the Netherlands, and the United States, alongside Eurojust, executed Operation Lightning. This coordinate
www.europol.europa.eu
March 23, 2026 at 12:53 AM
⚠️Η διεθνής επιχείρηση κατά της υπηρεσίας proxy SocksEscort και του malware AVrecon. Δείτε πώς παραβιάστηκαν routers των TP-Link, Netgear και D-Link. #SocksEscort #AVrecon #Netgear #TPLink #DLink #CyberSecurityNews
SocksEscort: FBI και Europol «γκρέμισαν» το δίκτυο που μόλυνε 369.000 routers και συσκευές IoT
Με τη χρήση του κακόβουλου λογισμικού AVrecon, οι χάκερ εκμεταλλεύονταν δρομολογητές γνωστών εταιρειών για να κρύβουν εγκληματικές δραστηριότητες εκατομμυρίων ευρώ.
gr.pcmag.com
March 22, 2026 at 3:50 PM
These takedowns expose a cybercrime epidemic: Russian devs behind DanaBot for fraud/ransomware, SocksEscort for DDoS/CSAM, PRC hackers hijacking US routers. Amid 31Tbps record DDoS by Aisuru botnet, US ISPs are prime targets. Billions lost globally. [1][2][3][4][6]
March 20, 2026 at 3:30 AM
🚨 BREAKING: US DOJ smashes multiple botnets fueling record cyberattacks—DanaBot (300K infections, $50M damage), SocksEscort (369K routers), & China-backed Flax Typhoon. 16 charged, servers seized. Cyber crooks hit hard! [1][2][3]
March 20, 2026 at 3:30 AM
Sept affaires révèlent une stratégie commune : contourner les institutions démocratiques par des redéfinitions techniques, des rebrandings éthiques et des détournements budgétaires pour imposer de nouveaux rapports de force numériques.
Quand États et entreprises réécrivent les règles par la bande
**Du Pentagone qui sélectionne ses IA selon leurs biais politiques à la Commission européenne qui déguise l'affaiblissement du RGPD en simplification technique, une même logique opère : redéfinir discrètement les règles du jeu plutôt que les changer ouvertement.** The Download: how AI is used for military targeting, and the Pentagon’s war on ClaudePlus: an ex-DOGE staffer has been accused of stealing social security data.MIT Technology ReviewThomas MacaulayLes autorités démantèlent Socksescort et son réseau proxy de modems infectés - NextNextAlexandre LaurentDigital Omnibus: EU DPAs reject many proposed changes to the GDPRThe independent authorities reject many of the European Commission’s proposals in the Digital Omnibusnoyb.eu Ces sept affaires dessinent une cartographie troublante des nouvelles stratégies de pouvoir numérique. Elles révèlent comment États et entreprises contournent systématiquement les mécanismes démocratiques pour imposer leurs agendas. EFF Launches New Fight to Free the LawEFF has filed a new lawsuit against the Consumer Product Safety Commission (CPSC) to ensure that the public has full access to the laws that govern us.Our client Public.Resource.Org (Public Resource), a tiny non-profit founded by open records advocate Carl Malamud, has a mission that’s both simple…Electronic Frontier FoundationCorynne McSherry La redéfinition technique devient l'arme de choix. Le Pentagone rejette Claude d'Anthropic pour ses 'préférences politiques intégrées' tout en adoptant ChatGPT et Grok pour l'aide à la décision létale. La Commission européenne tente de faire passer des restrictions majeures du RGPD pour de simples 'ajustements techniques'. Dans les deux cas, des choix politiques majeurs sont présentés comme des décisions purement techniques. Conseil d’État upholds Criteo’s €40M GDPR fineCNIL fined CRITEO, the biggest online advertisement and tracking company in Europe €40 Mio based on complaints by noyb and Privacy International.noyb.eu Le détournement institutionnel se systématise. Le New Jersey transforme un déficit de 3 milliards en croisade anti-tech avec 625 000 dollars symboliques. Les organisations privées maintiennent leurs droits d'auteur sur des standards devenus loi fédérale, privatisant l'accès aux règles. Sandvine échappe aux sanctions en se rebaptisant AppLogic Networks sans changer ses pratiques. Facing a budget squeeze, New Jersey decides to go after Big TechGov. Mikie Sherrill called Big Tech worse than Big Tobacco before proposing measures to regulate social media platforms.Reason.comMeagan O’Rourke Mais cette convergence révèle aussi l'émergence de contre-pouvoirs efficaces. L'EDPB et l'EDPS démontent la rhétorique de la Commission. NOYB et Privacy International obtiennent 40 millions d'amende contre Criteo. L'EFF s'allie à Harvard contre la privatisation des normes. Ces coalitions prouvent qu'une résistance organisée peut faire plier les stratégies de contournement les plus sophistiquées. From Sandvine to AppLogic Networks: a rebrand doesn’t mean reform - Access NowAccess Now, alongside several human rights organizations and independent news platforms, are calling on AppLogic Networks (previously Sandvine) to substantiate its announced corporate reforms following its removal from the U.S. Department of Commerce’s Entity List.Access Now _Points de vigilance : Risque de normalisation du contournement institutionnel comme mode de gouvernance standard. Les victoires ponctuelles peuvent masquer l'érosion systémique des mécanismes démocratiques de contrôle. Les stratégies de rebranding et de redéfinition technique risquent de se sophistiquer face à la résistance organisée._ > 9/10 : Score sur l'échelle des "5 piliers de la liberté", inspiré de l'ouvrage de Timothy Snyder https://da.van.ac/note-methodologique-5-piliers/ * * * ### Et maintenant ? Le croisement de ces sources fait apparaître des pistes d'action que chaque article seul ne révélait pas. 🤘 **Créer un observatoire européen des contournements institutionnels** Alliance autorités indépendantes + ONG + chercheurs pour détecter et documenter en temps réel les tentatives de redéfinition technique, détournement budgétaire et rebranding éthique. Système d'alerte précoce avec base de données publique des stratégies d'évitement identifiées. Reproduire le modèle EDPB-NOYB à l'échelle de tous les secteurs critiques. _→ On saura que ça marche quand les tentatives de contournement seront systématiquement exposées avant leur mise en œuvre, créant un coût réputationnel dissuasif._ 🤘 **Organiser des coalitions juridiques transsectorielles contre l'impunité par rebranding** Reproduire le succès NOYB-Privacy International contre Criteo en ciblant les entreprises qui échappent aux sanctions par changement de nom. Coalition juristes + ONG + journalistes d'investigation pour créer une jurisprudence sur la responsabilité des entités successeurs. Viser simultanément surveillance, ad-tech et IA militaire. _→ On saura que ça marche quand les entreprises ne pourront plus échapper à leurs responsabilités par un simple rebranding et que les sanctions incluront automatiquement les entités successeurs._ ✊ **Coordonner le retrait de consentement des piliers de soutien institutionnel** Cibler simultanément les chercheurs qui légitiment les IA militaires biaisées, les investisseurs qui financent les entreprises de surveillance, et les fournisseurs d'infrastructure qui hébergent les systèmes de tracking. Retirer le consentement de manière coordonnée pour fragiliser l'écosystème de contournement. _→ On saura que ça marche quand les acteurs du contournement institutionnel devront modifier leurs stratégies face au retrait coordonné de leurs soutiens techniques, financiers et académiques._ * * * **Ces pistes ne sont pas des recettes toutes faites, mais des points d'entrée pour repenser nos systèmes numériques selon une logique de liberté positive : non pas limiter, mais augmenter nos capacités collectives d'action.** ### On en discute ? Tu veux recevoir le flux quotidien des articles publiés sur le site ? Suis-moi sur LinkedIn, Bluesky, Mastodon, Facebook ou rejoins-moi sur Discord ! Tu as des remarques, des suggestions, ou tu veux discuter d'une idée pour avancer dans tes propres projets ? Connecte-toi et laisse-moi un commentaire ou jette un oeil directement à mon agenda.
da.van.ac
March 19, 2026 at 7:30 PM
Recent global crackdowns – from Southeast Asian scam factories to the SocksEscort botnet and INTERPOL’s Synergia III – show cybercrime as a contest of networks vs. networks.
March 19, 2026 at 10:11 AM
SocksEscort neutralisé grâce à un blocage FAI en temps réel : quand le renseignement privé (Black Lotus Labs) et la justice s'articulent au niveau réseau, l'impact est immédiat. 🔌 [lire]
March 18, 2026 at 7:16 AM
Law enforcement from eight countries disrupted the SocksEscort proxy network, linked to tens of millions in fraud, including ransomware and identity theft. Operation Lightning led to the seizure of 34 domains and 23 servers, with $3.5 million in cryptocurrency frozen.
Operation Lightning takes down SocksEscort proxy network blamed for tens of millions in fraud
go.theregister.com
March 17, 2026 at 9:04 PM