Felons, Fraudsters Flog Offensive Cybersecurity Startup

2026-07-12T07:23:25Zed45067c6952205e92afb84288d1099cc338f8fee52c8eac5c92285ae21c7817
AI-support-botAlarum TechnologiesCISAFBI takedownGitHub-leakKimwolf botnet arrest','DDoS','Netherlands server seizure','StolMetaMicrosoftNetNutPatch TuesdayPopaScattered SpiderThe Gentlemenaccount-hijackaccount-takeoverad-fraudbotnetcritical-vulnerabilitiesdata-leakexploit-codemalwareransomwareresidential-proxyvulnerability-acquisitionzero-day market

What happened

A series of high-impact cybersecurity developments: the FBI seized hundreds of domains tied to NetNut after research linked the Popa botnet (millions of compromised Android/TV devices used as residential proxies for ad fraud, account takeovers and scraping) to publicly traded Alarum Technologies; two Scattered Spider members pleaded guilty in the UK for the 2024 Transport for London attack; researchers tied Popa to NetNut/Alarum; an offensive security startup buying zero-days is operated by convicted felons and conspiracy theorists; The Gentlemen ransomware gang is expanding via aggressive 90%

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
ed45067c6952205e92afb84288d1099cc338f8fee52c8eac5c92285ae21c7817
Enrichment time
2026-07-12T07:23:25Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.