logo

FBI disrupts Moobot botnet used by Russian military hackers

ID: bbedf8d0-54f2-5606-8148-19bd13b535b2

STIX ID: report--bbedf8d0-54f2-5606-8148-19bd13b535b2

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2024-02-15

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

The FBI executed a court-authorized disruption of a Moobot-infected network of Ubiquiti EdgeOS SOHO routers that Russian GRU unit 26165 (APT28) repurposed for global spearphishing and credential theft; agents removed malware, temporarily modified firewall rules to block remote management and collected routing metadata while advising victims to reset default credentials to prevent reinfection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.