GKRootWire
Security ICE Signs $2M Deal for Zero-Click Phone Hacking ToolSecurity Attackers Exploit Critical Elementor Pro Bug to Hijack WordPress SitesAI ChatGPT Goes Down, Serves 404 Errors to UsersAI ChatGPT and Codex Suffer Widespread OutageAI Google DeepMind's WeatherNext 3 Sharpens AI Weather ForecastingAI Google's New AI Weather Model Sharpens Storm ForecastsSecurity ICE Signs $2M Deal for Zero-Click Phone Hacking ToolSecurity Attackers Exploit Critical Elementor Pro Bug to Hijack WordPress SitesAI ChatGPT Goes Down, Serves 404 Errors to UsersAI ChatGPT and Codex Suffer Widespread OutageAI Google DeepMind's WeatherNext 3 Sharpens AI Weather ForecastingAI Google's New AI Weather Model Sharpens Storm Forecasts
Security

Global Law Enforcement Dismantles Long-Running Sality Botnet

A coordinated international operation seized servers and infrastructure behind the veteran peer-to-peer malware network.

Law enforcement agencies from multiple countries, working alongside private cybersecurity firms, have taken down infrastructure powering the Sality botnet, one of the internet's longest-running malware networks. Sality has been active for well over a decade, using a peer-to-peer architecture that let infected machines communicate directly with one another rather than relying on a single command server, making it notoriously resilient to takedown attempts.

The operation targeted the servers and domains used to control and update infected devices, aiming to sever communication channels that let the botnet's operators issue commands, distribute additional malware, or harvest data from compromised systems. Because of its P2P design, Sality has historically survived earlier disruption efforts by other researchers and agencies.

Details on exactly how many infected systems remain active, or which countries led the effort, are still emerging, but the action represents a significant, coordinated blow to one of the internet's oldest botnet ecosystems.

Why it matters: P2P botnets like Sality are especially hard to kill because there's no single choke point to cut off, so a successful multi-country takedown signals improving coordination against decentralized threats. Even so, history shows Sality has resurfaced before, so expect ongoing monitoring rather than a definitive end.

Sources: BleepingComputer