logo

US dismantles 911 S5 botnet used for cyberattacks, arrests admin

ID: 3858e966-7476-5509-899b-3a5a645bc898

STIX ID: report--3858e966-7476-5509-899b-3a5a645bc898

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2024-05-29

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

The U.S. Justice Department and international partners dismantled the 911 S5 residential proxy botnet and arrested its administrator, YunHe Wang, after an operation that seized infrastructure, domains, and assets; the botnet had infected millions of Windows machines (over 19 million unique IPs) via malicious VPN apps and sold proxied access to criminals, enabling large-scale fraud, harassment, and other illicit activity that resulted in substantial financial losses.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.