logo

Authorities arrest 23-year-old accused of running the Kimwolf botnet

ID: 7be300de-f6e9-5278-8d5e-7ae396ac778c

STIX ID: report--7be300de-f6e9-5278-8d5e-7ae396ac778c

Feed Name: Security Affairs

Threat Score
85/100

Date Published: 2026-05-22

Date Updated: 2026-05-23

Author: Pierluigi Paganini

...
...

The article describes the U.S. and international disruption of several IoT/Android botnets—primarily Kimwolf—reporting the arrest of a 23-year-old alleged operator. Kimwolf is an Android-based DDoS and proxying botnet that has infected millions of devices, executed record terabit-scale attacks, used evasion techniques (DNS-over-TLS, elliptic-curve command signing, simple XOR obfuscation, blockchain-based hiding), and operated as part of a cybercrime-as-a-service ecosystem; authorities seized infrastructure and domains and unsealed charges and seizure warrants.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.