Anti-DDoS Firm Heaped Attacks on Brazilian ISPs
2026-05-02T07:23:26Z•311e71faf53a92469f1e5cdaefb6796de4cd47aa07e5fe52acbd2b5284c609aa
AisuruCanisterWormDDoSGandCrabIoT botnetIranJackSkidKimwolfMicrosoft Office tokensMossadPatch Tuesday April 2026','Microsoft','SharePoint zero‑day','WinREvilRussiaSMS phishingScattered SpiderStrykerUNKNaggravated identity theftanti‑DDoS abusebotnetransomwarerouter exploitationstate‑sponsoredtoken theftwiper malware
What happened
A batch of KrebsOnSecurity reports covering large-scale malicious activity and major vulnerability disclosures: a Brazilian anti‑DDoS firm was found enabling a botnet that attacked ISPs; a senior “Scattered Spider” member pleaded guilty for SMS‑phishing and identity theft; Russian-linked actors exploited old routers to harvest Microsoft Office authentication tokens from ~18,000 networks; multiple wiper campaigns (including CanisterWorm and an Iran‑linked attack on Stryker) were observed; U.S., Canadian and German authorities disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 311e71faf53a92469f1e5cdaefb6796de4cd47aa07e5fe52acbd2b5284c609aa
- Enrichment time
- 2026-05-02T07:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.