logo

CISO who helped unmask Badbox warns: Version 3 is coming

ID: 6a75e0ee-cb07-5122-90c8-5ccca9a43446

STIX ID: report--6a75e0ee-cb07-5122-90c8-5ccca9a43446

Feed Name: The Register (Security)

Threat Score
78/100

Date Published: 2025-06-11

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

*Badbox 2.0 is a large-scale botnet infecting millions of Android-based smart TV boxes and other inexpensive devices, now shifting from ad-fraud to offering residential-proxy services and deploying a vo1d2 DGA-enabled backdoor that enables credential theft, account takeover, DDoS, and resale of IP access; sinkholing and law-enforcement action have reduced impact but the operation is actively evolving and poised to return.*

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.