Tuesday, October 20, 2020

Trickbot—the for-hire botnet Microsoft attacked—is scrambling to stay alive

Cartoon image of a desktop computer under attack from viruses.

Enlarge (credit: Aurich Lawson / Ars Technica)

Operators of Trickbot—a for-hire botnet that has infected more than 1 million devices since 2016—are looking for new ways to stay afloat after Microsoft and a host of industry partners took coordinated action to disrupt it last week.

In an update published on Tuesday, Microsoft Corporate VP for Security & Trust Tom Burt said the operation initially managed to take down 62 of the 69 servers Trickbot was known to be using to control its vast network of infected devices. Trickbot operators responded by quickly spinning up 59 new servers, and Microsoft was able to eliminate all of them except for one.

In all, the industrywide operation has taken down 120 of 128 servers identified as belonging to Trickbot. Now, Trickbot is responding by using a competing criminal group to distribute the Trickbot malware.

Read 10 remaining paragraphs | Comments

https://arstechnica.com

No comments:

Post a Comment

Russia's finance minister says Russian companies have begun using bitcoin and other digital currencies in international payments to counter Western sanctions (Gleb Bryanski/Reuters)

Gleb Bryanski / Reuters : Russia's finance minister says Russian companies have begun using bitcoin and other digital currencies in i...