The seizure of hundreds of domains dismantles a massive residential proxy network that weaponized millions of consumer devices for malicious traffic. Threat actors heavily relied on this white-labeled infrastructure to mask origin IPs during password spraying, scraping, and C2 operations.
FBI Seizes NetNut Proxy Platform, Popa Botnet
Understanding how compromised home networks are used as exit nodes helps engineers model adversary obfuscation and identify indicators from NetNut's SDK/backend infra.
Read the original at Krebs on Security →
Subscribe
Short, high-signal articles and news summarized — at a frequency of your choosing. One click to subscribe.