CrowdStrike, Google shatter Glassworm botnet

https://image.theregister.com/5247359.jpg?imageId=5247359&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683

Developer-targeted, supply-chain attacks all the rage these days

CrowdStrike, working with Google and the Shadowserver Foundation, said it has taken down the Glassworm botnet, a self-propagating, credential-stealing worm that has targeted developers and spread through poisoned software packages since early 2025.

The endpoint security giant’s Counter Adversary Operations team and partners hit all four Glassworm command-and-control channels simultaneously at 1400 UTC on Tuesday, “severing the operators from their infected machines and their ability to deliver new malicious payloads,” according to CrowdStrike’s blog.

Google Threat Intelligence Group chief analyst John Hultquist confirmed his company’s involvement in a social media post. “As part of our disruption efforts, we are working with partners to bring more pain to attackers, especially when we see them abusing our products or targeting our users,” Hultquist wrote.

A spokesperson declined to provide additional details to The Register about Google’s role in the takedown.

The disruption comes...

Copyright of this story solely belongs to theregister.com. To see the full text click HERE

Read more

https://image.cnbcfm.com/api/v1/image/108312331-1779869975954-gettyimages-2152350323-mh1_9070.jpeg?v=1779870046&w=1920&h=1080

The UK's GCHQ head says the UK and allies have a “narrowing window” to counter cyber threats from China and Russia, as Russia intensifies “daily” hybrid warfare

Sponsor Posts Niantic Spatial: Drone Imagery to Physical AI — Niantic Spatial and Spexi Geospatial partner to turn drone imagery into city-scale 3D intelligence for physical AI — on demand, geometrically accurate, and ready for simulation and training. The Private AI That Remembers — Anuma is the all-in-one AI platform with private, portable