Dysphoria adds blockchain C2 and victim relays after the JackSkid disruption, keeping controllers one step removed from ...
Tengu abuses Linux hardware watchdogs to reboot devices after its main process is killed, letting other persistence ...
IoT botnet Dysphoria has infected over 200,000 devices, hiding command servers on Ethereum and Solana blockchain domains.
Dysphoria botnet, a new IoT threat that emerged six days after a major March 2026 law enforcement takedown, uses Ethereum and ...
Security researchers at Nozomi Networks Labs have disclosed a previously unknown IoT botnet, named Tengu, that turns one of embedded hardware's most fundamental safety features against the people ...
Slopsquatting, phantom squatting, and HalluSquatting all exploit the same late-binding attack pattern, where AI coding agents ...
With the ability to take control of distributed devices at scale, HalluSquatting has the potential to achieve various objectives not previously possible with prompt injections. Large ransomware ...
A Russian-speaking threat actor known as "bandcampro" used Google's open-source Gemini CLI AI tool as a hacking agent and to operate a small-scale botnet. The AI agent responded to the attacker's ...
HalluSquatting exploits AI coding assistants that hallucinate fake repository names, letting attackers register those names ...
Pedro Falé is a threat researcher with the security firm Bitsight. Falé told KrebsOnSecurity he was able to peer inside a ...
There’s malware lurking in shady smartphone apps and cheap off-brand household electronics. It has allowed operators of massive so-called botnet networks to use people’s home and wireless network ...