GKRootWire
AI xAI Publishes Details on Its Grok Web CrawlerAI Why 'Human-in-the-Loop' Might Have It BackwardsDev Tools Modular Ships Mojo 1.0, Marking the Language's Production DebutAI OpenAI's Head of Ethics Exits Less Than a Year Into the JobAI Researchers Show How to Extract Hidden Reasoning from Proprietary LLM APIsAI Nvidia Debuts Nemotron 3.5 Lightning and NeMo Switchyard for Local AI WorkflowsAI xAI Publishes Details on Its Grok Web CrawlerAI Why 'Human-in-the-Loop' Might Have It BackwardsDev Tools Modular Ships Mojo 1.0, Marking the Language's Production DebutAI OpenAI's Head of Ethics Exits Less Than a Year Into the JobAI Researchers Show How to Extract Hidden Reasoning from Proprietary LLM APIsAI Nvidia Debuts Nemotron 3.5 Lightning and NeMo Switchyard for Local AI Workflows
Security

FBI Takes Down NetNut Proxy Network Tied to Popa Botnet

Federal agents and industry partners seized hundreds of domains linked to the Israeli-run residential proxy service after researchers traced it to a two-million-device botnet.

The FBI announced it has seized hundreds of domains connected to NetNut, a large residential proxy service run by Alarum Technologies, a company publicly traded on the Nasdaq under the ticker ALAR. Residential proxy services like NetNut let customers route their internet traffic through the home IP addresses of everyday users, often marketed for legitimate purposes like ad verification or market research, but frequently abused to mask fraud, scraping, and other malicious activity.

The seizure follows a report published roughly two weeks earlier by security journalist Brian Krebs, which cited multiple research firms linking NetNut's infrastructure to the Popa botnet. That botnet is believed to have quietly compromised at least two million consumer devices, turning them into unwitting exit nodes for proxy traffic without meaningful user consent.

Details on how the FBI coordinated the takedown, and what happens next for Alarum Technologies, remain limited, but the action signals that law enforcement is increasingly willing to target the business side of the residential proxy industry rather than just the malware distributors who build these botnets.

Why it matters: Residential proxy networks occupy a legal gray zone that has let them scale largely unchecked, even when their IP supply chain quietly depends on infected consumer devices. This takedown suggests regulators and the FBI are starting to treat proxy providers as accountable partners in botnet operations rather than neutral infrastructure, which could pressure the broader proxy industry to audit where its IP addresses actually come from.

Sources: Krebs on Security