Anti-DDoS Firm Heaped Attacks on Brazilian ISPs
2026-05-03T07:23:36Z•c3fed3e8c34bc75bcd8cae1c4b97b23bfb386a6c857f25dd011dfbfcdea56806
AisuruCanisterWormGandCrabJackSkidKimwolfMossadREviladobebotnetddosespionageextortiongoogle-chromeiotmicrosoftnation-statepatchingphishingransomwarerouter-exploitscattered-spidertoken-theftvulnerabilitywiperzero-day
What happened
KrebsOnSecurity aggregation (Mar–Apr 2026) highlights multiple active, high-impact threats: a Brazilian anti‑DDoS vendor was implicated in enabling large-scale attacks on ISPs after a breach; U.S./allied law enforcement disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad) responsible for record DDoS activity; Russia-linked actors exploited known router flaws to harvest Microsoft Office authentication tokens from >18,000 networks; and an Iran-targeting wiper named “CanisterWorm” spread via insecure cloud services. Other notable items: a senior Scattered Spider member pleaded/g
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- c3fed3e8c34bc75bcd8cae1c4b97b23bfb386a6c857f25dd011dfbfcdea56806
- Enrichment time
- 2026-05-03T07:23:36Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.