City
Epaper

US dismantles Russian botnet that hacked millions of devices

By IANS | Updated: June 21, 2022 10:45 IST

San Francisco, June 21 The US has dismantled the infrastructure of a Russian botnet which hacked millions of ...

Open in App

San Francisco, June 21 The US has dismantled the infrastructure of a Russian botnet which hacked millions of computers and other electronic devices around the world while working as a proxy service.

The US Department of Justice, together with law enforcement partners in Germany, the Netherlands and the UK, brought down a Russian botnet known as RSOCKS that initially targeted Internet of Things (IoT) devices and then expanded into compromising Android devices and conventional computers.

A botnet is a group of hacked internet-connected devices that are controlled as a group without the owner's knowledge and typically used for malicious purposes.

"The RSOCKS botnet compromised millions of devices throughout the world," said US Attorney Randy Grossman.

"Working with public and private partners around the globe, we will relentlessly pursue them while using all the tools at our disposal to disrupt their threats and prosecute those responsible," he said in a statement.

Rather than offer proxies that RSOCKS had leased, the botnet offered its clients access to IP addresses assigned to devices that had been hacked.

The cost for access to a pool of RSOCKS proxies ranged from $30 per day for access to 2,000 proxies to $200 per day for access to 90,000 proxies.

"This operation disrupted a highly sophisticated Russia-based cybercrime organisation that conducted cyber intrusions in the US and abroad," said FBI Special Agent in Charge, Stacey Moy.

Once purchased, the customer could download a list of IP addresses and ports associated with one or more of the botnet's backend servers.

The customer could then route malicious internet traffic through the compromised victim devices to mask or hide the true source of the traffic.

"It is believed that the users of this type of proxy service were conducting large scale attacks against authentication services, also known as credential stuffing, and anonymising themselves when accessing compromised social media accounts, or sending malicious email, such as phishing messages," the DoJ explained.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: Stacey moyusSan FranciscoFBIUs Department Of JusticeSan francisco bayJose d'saRandy grossman
Open in App

Related Stories

MumbaiMumbai: Bomb Threat Call to US Consulate Traced to Mentally Unstable Youth Upset Over Visa Rejection

NationalAir India Flight From San Francisco to Mumbai Suffers Technical Snag; Passengers Deplaned at Kolkata Airport (Watch Videos)

InternationalOrganic Ground Beef Recalled Over E. Coli Fears in US - Is Yours Affected?

InternationalTennessee: One Killed, Several Injured After Woman Suffers Seizure While Driving, Hits Pedestrians and Vehicles in Gatlinburg

InternationalColorado Attack: 6 Injured After Suspect Throws Molotov Cocktails at Pro-Israel Group at Pearl Street Mall in Boulder

Technology Realted Stories

TechnologyDGCA gives clean chit to Air India’s Boeing 787 fleet amid thorough inspection

TechnologyNo major safety concerns with Air India’s Boeing 787 fleet: DGCA

TechnologyAndhra Pradesh plans to establish three circular economy parks

TechnologyIPO-bound Arisinfra's net loss widens to Rs 17.3 crore, revenue drops nearly 7 pc in FY24

TechnologyUnion Minister Jitendra Singh reviews progress of science and technology institutes in Northeast