#kimwolf
Feds just took down 4 botnets, including the Aisuru and Kimwolf botnets that carried out record-breaking DDOS attacks peaking at 30+ terabits per second, nearly three times the previous record. DOJ says the botnets had hijacked more than three million devices. www.wired.com/story/us-tak...
US Takes Down Botnets Used in Record-Breaking Cyberattacks
The Aisuru, Kimwolf, JackSkid, and Mossad botnets had used clever techniques to worm into home networks, infecting more than 3 million devices in total, according to the US Justice Department.
www.wired.com
March 20, 2026 at 12:12 AM
The Aisuru, Kimwolf, JackSkid, and Mossad botnets had used clever techniques to worm into home networks, infecting more than 3 million devices in total, according to the US Justice Department. www.wired.com/story/us-tak...
US Takes Down Botnets Used in Record-Breaking Cyberattacks
The Aisuru, Kimwolf, JackSkid, and Mossad botnets had used clever techniques to worm into home networks, infecting more than 3 million devices in total, according to the US Justice Department.
www.wired.com
March 20, 2026 at 12:13 AM
Aisuru/Kimwolf botnet got disrupted today
March 19, 2026 at 11:59 PM
Brian Krebs tracked down the admin of the Kimwolf DDoS botnet to a 23-year-old from Ottawa, Canada named Jacob Butler, aka Dort

Butler told Krebs he has not used the Dort persona since 2021 and claims someone is impersonating him

krebsonsecurity.com/2026/02/who-...
Who is the Kimwolf Botmaster “Dort”?
In early January 2026, KrebsOnSecurity revealed how a security researcher disclosed a vulnerability that was used to assemble Kimwolf, the world's largest and most disruptive botnet. Since then, the p...
krebsonsecurity.com
March 1, 2026 at 7:29 PM
-GitHub is starting to have a real malware problem
-Russian intelligence services compromise thousands of Signal accounts
-Trivy vulnerability scanner compromised for supply chain attack
-FBI takes down Aisuru, Kimwolf botnets

Newsletter: news.risky.biz/risky-bullet...
Podcast: risky.biz/RBNEWS541/
March 23, 2026 at 10:11 AM
Lumen has sinkholed over 550 command and control servers for the Kimwolf botnet

www.linkedin.com/pulse/keepin...
Keeping the Kimwolf at bay: putting a leash on a massive DDoS Botnet.
With the fall of RapperBot in August 2025, Aisuru quickly regained its position as the world’s most powerful DDoS botnet. By September, Aisuru had achieved record-breaking attacks, flooding targets wi...
www.linkedin.com
January 15, 2026 at 12:07 AM
U.S. and Canadian authorities arrested and charged a Canadian man with operating the KimWolf distributed denial-of-service (DDoS) botnet, which infected nearly two million devices worldwide.
US and Canada arrest and charge suspected Kimwolf botnet admin
U.S. and Canadian authorities arrested and charged a Canadian man with operating the KimWolf distributed denial-of-service (DDoS) botnet, which infected nearly two million devices worldwide.
www.bleepingcomputer.com
May 22, 2026 at 9:01 AM
The Kimwolf, aka Aisuru, botnet is back online with a new version, surviving a December takedown by the FBI

unit42.paloaltonetworks.com/kimwolf-v7-b...
Kimwolf v7: An Evolution of the Kimwolf Botnet
Discover how Kimwolf v7 targets Android IoT devices with HTTP/2 DDoS fingerprinting, Ethereum ENS C2 resolution and Tor backup routing.
unit42.paloaltonetworks.com
August 11, 2026 at 1:41 PM
Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire Attacks
Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire Attacks
thehackernews.com
May 22, 2026 at 9:45 AM
A profile of Benjamin Brundage, a 22-year-old college senior who helped uncover the Kimwolf botnet, which launched 26,000+ DDoS attacks targeting 8,000+ victims (Robert McMillan/Wall Street Journal)

Main Link | Techmeme Permalink
April 4, 2026 at 11:30 AM
NEW: The US just took down four major botnets, two of which were involved in a record-breaking attack that clocked more than 30 TB/second of traffic against the target. @agreenberg.bsky.social reports: www.wired.com/story/us-tak...
US Takes Down Botnets Used in Record-Breaking Cyberattacks
The Aisuru, Kimwolf, JackSkid, and Mossad botnets had used clever techniques to worm into home networks, infecting more than 3 million devices in total, according to the US Justice Department.
www.wired.com
March 20, 2026 at 12:14 AM
Jacob Butler, aka “Dort,” 23, of Ottawa, Canada, was arrested for running the Kimwolf DDoS botnet

www.justice.gov/usao-ak/pr/c...
May 21, 2026 at 9:18 PM
US and Canada arrest and charge suspected Kimwolf botnet admin
US and Canada arrest and charge suspected Kimwolf botnet admin
U.S. and Canadian authorities arrested and charged a Canadian man with operating the KimWolf distributed denial-of-service (DDoS) botnet, which infected nearly two million devices worldwide.
www.bleepingcomputer.com
May 22, 2026 at 9:20 AM
Two of world's largest bot networks behind major attacks shut down in operation with Germany
Two of world's largest bot networks behind major attacks shut down
German, US and Canadian cybercrime specialists shut down two of the world's largest botnets, Aisuru and Kimwolf, suspected of being behind major online attacks.
www.euronews.com
March 20, 2026 at 1:11 PM
German, US and Canadian cybercrime specialists shut down two of the world's largest botnets, Aisuru and Kimwolf, suspected of being behind major online attacks.
Two of world's largest bot networks behind major attacks shut down
German, US and Canadian cybercrime specialists shut down two of the world's largest botnets, Aisuru and Kimwolf, suspected of being behind major online attacks.
l.euronews.com
March 20, 2026 at 1:58 PM
Your android TV box that you bought as a bargain is an IT and possibly national security threat.

blog.xlab.qianxin.com/kimwolf-botn...

Also follow Brian Krebs at the infosec server for deeper coverage

infosec.exchange/@briankrebs/...
December 25, 2025 at 4:59 PM
US and Canadian authorities arrest 23-year-old Jacob Butler, known online as "Dort", for allegedly operating the Kimwolf DDoS botnet, which infected ~2M devices (Sergiu Gatlan/BleepingComputer)

Main Link | Techmeme Permalink
May 22, 2026 at 10:05 AM
Looks like the Aisuru botnet group created another botnet named Kimwolf that they are now using for DDoS attacks

-1.83m infected systems
-most are Android devices
-uses EtherHiding and Tor

blog.xlab.qianxin.com/kimwolf-botn...
Kimwolf Exposed: The Massive Android Botnet with 1.8 Million Infected Devices
Background On October 24, 2025, a trusted partner in the security community provided us with a brand-new botnet sample. The most distinctive feature of this sample was its C2 domain, 14emeliaterrace...
blog.xlab.qianxin.com
December 18, 2025 at 5:53 PM
Over 2 million Android TVs and low-cost streaming devices are infected with the Kimwolf botnet, allowing operators to launch large-scale DDoS attacks and resell household bandwidth.

Read: hackread.com/android-tv-s...

#Kimwolf #Android #Malware #DDoS #CyberSecurity #Botnet
Millions of Android Powered TVs and Streaming Devices Infected by Kimwolf Botnet
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
January 6, 2026 at 10:07 PM
4/ DOJ recently disrupted several IoT botnets rented out as DDoS and amplification infrastructure. Researchers warn the ecosystem regenerates faster than any single takedown. securityboulevard.com/2026/03/doj-...
DOJ Disrupts Botnets, But DDoS Threats Remain, Security Pros Warn
A disruption, but not a victory. The DOJ's dismantling of the infrastructure used by four prominent IoT botnets, including Aisuru and KimWolf, was significant, but security pros are warning that the o...
securityboulevard.com
April 25, 2026 at 1:52 PM
Massive Android botnet Kimwolf infects millions, strikes with DDoS
Massive Android botnet Kimwolf infects millions, strikes with DDoS
The Kimwolf Android botnet has infected 1.8M+ devices, launching massive DDoS attacks and boosting its C&C domain, says XLab.
securityaffairs.com
December 21, 2025 at 1:32 PM
Kimwolf Android botnet abuses residential proxies to infect internal devices
Kimwolf Android botnet abuses residential proxies to infect internal devices
The Kimwolf botnet, an Android variant of the Aisuru malware, has grown to more than two million hosts, most of them infected by exploiting vulnerabilities in residential proxy networks to target devices on internal networks.
www.bleepingcomputer.com
January 6, 2026 at 7:22 PM