Anti-DDoS Firm Heaped Attacks on Brazilian ISPs

2026-05-02T07:23:26Z311e71faf53a92469f1e5cdaefb6796de4cd47aa07e5fe52acbd2b5284c609aa
AisuruCanisterWormDDoSGandCrabIoT botnetIranJackSkidKimwolfMicrosoft Office tokensMossadPatch Tuesday April 2026','Microsoft','SharePoint zero‑day','WinREvilRussiaSMS phishingScattered SpiderStrykerUNKNaggravated identity theftanti‑DDoS abusebotnetransomwarerouter exploitationstate‑sponsoredtoken theftwiper malware

What happened

A batch of KrebsOnSecurity reports covering large-scale malicious activity and major vulnerability disclosures: a Brazilian anti‑DDoS firm was found enabling a botnet that attacked ISPs; a senior “Scattered Spider” member pleaded guilty for SMS‑phishing and identity theft; Russian-linked actors exploited old routers to harvest Microsoft Office authentication tokens from ~18,000 networks; multiple wiper campaigns (including CanisterWorm and an Iran‑linked attack on Stryker) were observed; U.S., Canadian and German authorities disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
311e71faf53a92469f1e5cdaefb6796de4cd47aa07e5fe52acbd2b5284c609aa
Enrichment time
2026-05-02T07:23:26Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.