Anti-DDoS Firm Heaped Attacks on Brazilian ISPs

2026-05-03T07:23:36Zc3fed3e8c34bc75bcd8cae1c4b97b23bfb386a6c857f25dd011dfbfcdea56806
AisuruCanisterWormGandCrabJackSkidKimwolfMossadREviladobebotnetddosespionageextortiongoogle-chromeiotmicrosoftnation-statepatchingphishingransomwarerouter-exploitscattered-spidertoken-theftvulnerabilitywiperzero-day

What happened

KrebsOnSecurity aggregation (Mar–Apr 2026) highlights multiple active, high-impact threats: a Brazilian anti‑DDoS vendor was implicated in enabling large-scale attacks on ISPs after a breach; U.S./allied law enforcement disrupted four massive IoT botnets (Aisuru, Kimwolf, JackSkid, Mossad) responsible for record DDoS activity; Russia-linked actors exploited known router flaws to harvest Microsoft Office authentication tokens from >18,000 networks; and an Iran-targeting wiper named “CanisterWorm” spread via insecure cloud services. Other notable items: a senior Scattered Spider member pleaded/g

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
c3fed3e8c34bc75bcd8cae1c4b97b23bfb386a6c857f25dd011dfbfcdea56806
Enrichment time
2026-05-03T07:23:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.