ISP Sinkholes Kimwolf Servers Amid Eruption of Bot Traffic

An ISP has sinkholed over 550 command and control servers for the Kimwolf and Aisuru botnets, which have grown to infect millions of devices, primarily by exploiting compromised Android TV boxes and leveraging residential proxies. The Kimwolf botnet spreads rapidly by exploiting DNS settings to infect other devices on the same local network, and its operators are observed reselling proxy bandwidth and botnet access for DDoS attacks.

Edward Kiledjian @ekiledjian