Anti-DDoS Firm Heaped Attacks on Brazilian ISPs
2026-05-02T13:23:29Z•75751b5f7741f01ff71debe4180edc309aedabde17dad5bf1515d77f5e0bde10
AisuruBrazilCanisterWormDDoSDaniil ShchukinGandCrabIoT botnetIran-targeting attacksJackSkidKimwolfMicrosoft Office tokensMossadREvilRussian state actorsScattered SpiderTylerbUNKNaggravated-identity-theftanti-DDoSbotnetransomwarerouter-vulnerabilitiestoken-theftwiperwire-fraud
What happened
This collection of KrebsOnSecurity reports describes multiple high-impact cyber incidents and trends in early 2026: an anti-DDoS firm in Brazil was implicated in enabling a botnet that launched large DDoS attacks against ISPs; Russian state-linked actors exploited known router vulnerabilities to harvest Microsoft Office authentication tokens from >18,000 networks; law enforcement disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad); a member of the Scattered Spider crew ('Tylerb') pleaded guilty to wire fraud and aggravated identity theft; German authorities unmasked 'UNKN' (
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 75751b5f7741f01ff71debe4180edc309aedabde17dad5bf1515d77f5e0bde10
- Enrichment time
- 2026-05-02T13:23:29Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.