DoJ Disrupts 3 Million-Device IoT Botnets Behind Record 31.4 Tbps Global DDoS Attacks

2026-03-20T07:24:20Zbf64f1db6ed4293800a2bc2d10980eaad66f0015dd48e5175b33e6d536281900
android-bankingapplebotnet-disruptionbyovdcisco-fmccorunadarkswordedr-evasionexploit-kitglassworminterlockiosiot-botnetlaw-enforcementmalwareperseusprivilege-escalationransomwarespeaglesupply-chain-compromisesystemdtelnetdubuntuwebkitzero-day

What happened

A wide-ranging set of security developments: U.S., Canadian and German law enforcement disrupted C2 infrastructure for multiple IoT botnets (AISURU, Kimwolf, JackSkid, Mossad) affecting millions of devices; multiple high‑severity and actively exploited vulnerabilities were disclosed or weaponized (notably a Cisco FMC zero‑day used by Interlock ransomware and a critical GNU telnetd RCE). Apple and researchers warned of powerful iOS exploit kits (DarkSword, Coruna) targeting outdated devices, and Apple patched a WebKit same‑origin bypass. Other highlights include new malware (Speagle hijacking a

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
bf64f1db6ed4293800a2bc2d10980eaad66f0015dd48e5175b33e6d536281900
Enrichment time
2026-03-20T07:24:20Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.