Aeternum Botnet Shifts Command Control to Polygon Blockchain
2026-03-04T21:11:11Z•a664370ed037bbeab8d26f522d236b9d03cd486f06c0217e60b83845c7cd8e0e
Cisco SD-WANDellLazarusMedusaPolygonUNC2814ai-assistants-abuseai-enabled-attacksandroid-malwareblockchain-c2botnetcryptojackingddosindustrial-control-systemsinsider-threatsmfa-bypassnpmnugetopenclawphishingransomwareremcossupply-chainvulnerabilitieszero-day
What happened
A broad, high-impact surge in cyber activity and vulnerabilities was reported: the Aeternum botnet moved C2 to the Polygon blockchain complicating takedowns; nation-state and long-running espionage (UNC2814) campaigns were disrupted; and North Korea-linked Lazarus expanded ransomware with Medusa targeting US healthcare. Critical zero-day exploitation concerns were flagged — notably a Cisco Catalyst SD‑WAN zero-day (allies urging urgent patching) and a long‑used CVSS 10.0 Dell RecoverPoint zero-day — alongside widespread exploitable flaws across organizations. Attack trends include a massive 32
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- a664370ed037bbeab8d26f522d236b9d03cd486f06c0217e60b83845c7cd8e0e
- Enrichment time
- 2026-03-04T21:11:11Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.