Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-02 17:00 PDT
- FBI Seizes NetNut Proxy Platform, Popa Botnet
KrebsOnSecurity • 2026-07-02 12:27 • krebsonsecurity.com
The Federal Bureau of Investigation (FBI) said today it worked with industry partners to seize hundreds of domains associated with NetNut, a sprawling residential proxy service operated by the publicly-traded Israeli company Alarum Technologies [NASDAQ: ALAR]. The action comes roughly two weeks after KrebsOnSecurity published findings from multiple security firms connecting NetNut to the Popa botnet, a collection of at least two million devices that have been compromised by malicious software with little or no consent from victims.
https://krebsonsecurity.com/2026/07/fbi-seizes-netnut-proxy-platform-popa-botnet/ - Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices
The Hacker News • 2026-07-02 11:54 • thehackernews.com
Google has significantly degraded NetNut, one of the biggest networks that turns home devices into rented relays for other people’s traffic.Working with the FBI, Lumen, and others, Google’s Threat Intelligence Group (GTIG) said this week it had reduced the network’s pool of usable devices by millions.
Google identifies NetNut, also tracked as Popa, as a network spread across home
https://thehackernews.com/2026/07/google-disrupts-netnut-residential.html - Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials
The Hacker News • 2026-07-02 11:30 • thehackernews.com
Threat actors associated with the Anubis ransomware operation have been observed exploiting the Citrix Bleed 2 (CVE-2025-5777) vulnerability to obtain initial access.“Although tactics differ between affiliates, common patterns emerged in tradecraft through use of legitimate Remote Management and Monitoring (RMM) tooling, credential access, and hands-on-keyboard procedures used for lateral
https://thehackernews.com/2026/07/ransomware-groups-turn-to-citrix-bleed.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
