FBI disrupts Russian Moobot botnet infecting Ubiquiti routers
ID: 00770717-ee4c-5d16-b061-c7c490f83f6d
STIX ID: report--00770717-ee4c-5d16-b061-c7c490f83f6d
Feed Name: Bleeping Computer
The FBI conducted a court-authorized takedown of a Moobot-infected botnet of hundreds of Ubiquiti EdgeOS routers that Russian Military Intelligence (GRU/APT28) repurposed to proxy spearphishing and credential-theft operations against U.S. and allied government, military, and corporate targets; agents removed malware, wiped malicious data, and temporarily modified routers' firewall rules to block remote management while advising victims to remediate and change default credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
