Operation Lightning takes down SocksEscort proxy network blamed for tens of millions in fraud
ID: b9b61fcb-e8ce-5405-9e53-635281a52d88
STIX ID: report--b9b61fcb-e8ce-5405-9e53-635281a52d88
Feed Name: The Register (Security)
Threat Score
Operation Lightning targeted SocksEscort, a large criminal residential-proxy service that used the AVRecon botnet to infect SOHO routers and sell access to hundreds of thousands of IPs for large-scale fraud; authorities seized domains and servers across multiple countries, froze about $3.5M in cryptocurrency, and credited the disruption with mitigating extensive financial losses tied to ransomware, fraud, and account takeovers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
