logo

Void Botnet Uses Ethereum Smart Contracts for Seizure-Resistant C2 Infrastructure

ID: 5e380b15-e05a-5370-906d-ebc0a3bd2d36

STIX ID: report--5e380b15-e05a-5370-906d-ebc0a3bd2d36

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-05-20

Date Updated: 2026-05-21

Author: Tushar Subhra Dutta

...
...

Void Botnet is a newly observed Rust-based loader advertised in March 2026 that uses Ethereum smart contracts as a decentralized, resilient command-and-control channel (with a faster web-panel fallback). Qrator Labs' analysis (May 18, 2026) describes extensive operator capabilities — 14 task types including DDoS, credential theft, proxy-as-a-service, in-memory execution and persistence — operator handles (TheVoidStl, nikoniko), related malware names, build details, pricing, and operational IoCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.