DOJ, FBI disrupt Russian intelligence botnet
ID: 77ef7723-6369-5214-8808-69e0924aeb29
STIX ID: report--77ef7723-6369-5214-8808-69e0924aeb29
Feed Name: CyberScoop
Threat Score
U.S. authorities (FBI and DOJ) executed a court-authorized operation to disrupt a Mirai-based Moobot botnet operated by Russian GRU Unit 26165 (APT28) that had compromised hundreds of Ubiquiti EdgeOS routers using default administrative passwords; the action removed malicious files, adjusted firewall rules to block remote management, and briefly collected routing metadata, though routers can be reinfected if factory resets retain default credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
