Close Menu
Newstech24.com
  • Home
  • News
  • Arabic News
  • Technology
  • Economy & Business
  • Sports News
What's Hot

المسلم ظهران ممداني يفوز بانتخابات الديموقراطيين التمهيدية لرئاسة بلدية نيويورك

June 25, 2025

River’s Mastantuono sealed Madrid transfer after discuss with Alonso

June 25, 2025

Donald Trump’s wavering on Nato defence pact casts pall over summit

June 25, 2025
Facebook X (Twitter) Instagram
Wednesday, June 25
Facebook X (Twitter) Instagram
Newstech24.com
  • Home
  • News
  • Arabic News
  • Technology
  • Economy & Business
  • Sports News
Newstech24.com
Home»Technology»FBI and Dutch police seize and shut down botnet of hacked routers
Technology

FBI and Dutch police seize and shut down botnet of hacked routers

AdminBy AdminMay 9, 2025No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
FBI and Dutch police seize and shut down botnet of hacked routers
Share
Facebook Twitter LinkedIn Pinterest Email

A joint international law enforcement action shut down two services accused of providing a botnet of hacked internet-connected devices, including routers, to cybercriminals. U.S. prosecutors also indicted four people accused of hacking into the devices and running the botnet. 

On Wednesday, the websites of Anyproxy and 5Socks were replaced with notices stating they had been seized by the FBI as part of a law enforcement operation called “Operation Moonlander.” The notice said the law enforcement action was carried out by the FBI, the Dutch National Police (Politie), the U.S. Attorney’s Office for the Northern District of Oklahoma, and the U.S. Department of Justice. 

Then on Friday, U.S. prosecutors announced the dismantling of the botnet and the indictment of three Russians: Alexey Viktorovich Chertkov, Kirill Vladimirovich Morozov, Aleksandr Aleksandrovich Shishkin; and Dmitriy Rubtsov, a Kazakhstan national. The four are accused of profiting from running Anyproxy and 5Socks under the pretense of offering legitimate proxy services, but which prosecutors say were built on hacked routers.

Chertkov, Morozov, Rubtsoyv, and Shishkin, who all reside outside of the United States, targeted older-models of wireless internet routers that had known vulnerabilities, compromising “thousands” of such devices, according to the now-unsealed indictment. 

When in control of those routers, the four individuals then sold access to the botnet on Anyproxy and 5Socks, services that have been active since 2004, according to their websites and the charging authorities. 

Residential proxy networks are not illegal on their own; these offerings are often used to provide customers with IP addresses for accessing geoblocked content or bypassing government censorship. Anyproxy and 5Socks, however, allegedly built their network of proxies — some of them made of residential IP addresses — by infecting thousands of vulnerable internet-connected devices and effectively turning them into a botnet used by cybercriminals, according to the Department of Justice.

“In this way, the botnet subscribers’ internet traffic appeared to come from the IP addresses assigned to the compromised devices rather than the IP addresses assigned to the devices that the subscribers were actually using to conduct their online activity,” read the indictment. 

Techcrunch event

Berkeley, CA
|
June 5


BOOK NOW

“Conspirators acting through 5Socks publicly marketed the Anyproxy botnet as a residential proxy service on social media and online discussion forums, including cybercriminal forums,” the indictment added. “Such residential proxy services are particularly useful to criminal hackers to provide anonymity when committing cybercrimes; residential‐as opposed to commercial‐IP addresses are generally assumed by internet security services as much more likely to be legitimate traffic.”

According to the DOJ’s press release, the four are believed to have made more than $46 million from selling access to the botnet.

The FBI, DOJ, and the Dutch National Police did not respond to requests for comment. 

Ryan English, a researcher at Black Lotus Labs, told TechCrunch ahead of the domain seizures that the two services were used for several types of abuse, including password spraying, launching distributed denial-of-service (DDoS) attacks, and ad fraud. 

On Friday, Black Lotus Labs, a team of researchers housed within cybersecurity firm Lumen, published a report saying they helped the authorities track the proxy networks. As Black Lotus explained in its report, the botnet was “designed to offer anonymity for malicious actors online.”

English told TechCrunch that he and his colleagues are confident that Anyproxy and 5Socks are “the same pool of proxies run by the same operators, just under a different name,” and that “the bulk of the botnet were routers, all kinds of end-of-life make and models.”

According to the report and based on Lumen’s global network visibility, the botnet had “an average of about 1,000 weekly active proxies in over 80 countries.”

Spur, a company that tracks proxy services on the internet, also worked on the operation. Spur’s co-founder Riley Kilmer told TechCrunch that while 5Socks is one of the smaller criminal networks the company tracks, the network had “gained in popularity for financial fraud.”


{content}

Source: {feed_title}

Share this:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X
botnet Dutch FBI Hacked Police Routers seize shut
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Admin
  • Website

Related Posts

Ironheart evaluate: a reminder that Marvel’s younger heroes are the long run

June 25, 2025

DJI ‘stays dedicated to the US market’ as cabinets go naked of drones

June 24, 2025

Assessment: Misen Chef’s Knife | WIRED

June 24, 2025
Leave A Reply Cancel Reply

Don't Miss
Arabic News

المسلم ظهران ممداني يفوز بانتخابات الديموقراطيين التمهيدية لرئاسة بلدية نيويورك

By AdminJune 25, 20250

نيويورك: فاز المرشح اليساري ظهران ممداني في الانتخابات التمهيدية للحزب الديموقراطي لانتخابات رئاسة بلدية نيويورك،…

Share this:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X

River’s Mastantuono sealed Madrid transfer after discuss with Alonso

June 25, 2025

Donald Trump’s wavering on Nato defence pact casts pall over summit

June 25, 2025

نيمار يجدد تعاقده مع نادي سانتوس البرازيلي

June 25, 2025

Pirates take away Cruz after he fails to expire double play

June 25, 2025

تمثال مسيحي قرب روما كان يذرف دما تبين أنه عائد لمحتالة إيطالية

June 25, 2025

FIFA probing Pachuca’s Cabral after Rüdiger racism allegation

June 25, 2025

How oil merchants referred to as the Center East battle

June 25, 2025

Man Metropolis’s Claudio Echeverri misses coaching, in boot

June 25, 2025

Zohran Mamdani stuns Democratic institution in New York mayor race

June 25, 2025
Advertisement
About Us
About Us

NewsTech24 is your premier digital news destination, delivering breaking updates, in-depth analysis, and real-time coverage across sports, technology, global economics, and the Arab world. We pride ourselves on accuracy, speed, and unbiased reporting, keeping you informed 24/7. Whether it’s the latest tech innovations, market trends, sports highlights, or key developments in the Middle East—NewsTech24 bridges the gap between news and insight.

Company
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Disclaimer
  • Terms Of Use
Latest Posts

المسلم ظهران ممداني يفوز بانتخابات الديموقراطيين التمهيدية لرئاسة بلدية نيويورك

June 25, 2025

River’s Mastantuono sealed Madrid transfer after discuss with Alonso

June 25, 2025

Donald Trump’s wavering on Nato defence pact casts pall over summit

June 25, 2025

نيمار يجدد تعاقده مع نادي سانتوس البرازيلي

June 25, 2025

Pirates take away Cruz after he fails to expire double play

June 25, 2025
Newstech24.com
Facebook X (Twitter) Tumblr Threads RSS
  • Home
  • News
  • Arabic News
  • Technology
  • Economy & Business
  • Sports News
© 2025 ThemeSphere. Designed by ThemeSphere.

Type above and press Enter to search. Press Esc to cancel.