KrebsOnSecurity Highlights 16 Years of Cybercrime Investigations
Summary
Hide ▲
Show ▼
KrebsOnSecurity.com celebrated its 16th anniversary, reflecting on significant cybercrime investigations and coverage over the past year. The site highlighted several key developments, including the exposure of bulletproof hosting providers, financial firms enabling cybercrime, and the rise of sophisticated botnets like Aisuru and Kimwolf. The coverage also detailed the impact of phishing operations, particularly those originating from China and Pakistan, and the ongoing battle against large-scale DDoS attacks.
Timeline
-
29.12.2025 22:23 1 articles · 23h ago
Kimwolf Botnet Identified as World's Largest and Most Dangerous
Chinese security firm XLab identified the Kimwolf botnet as the world's largest and most dangerous collection of compromised machines, with approximately 1.83 million devices under its control as of December 17, 2025. The botnet's author showed an almost 'obsessive' fixation on cybersecurity journalist Brian Krebs, leaving easter eggs related to him in multiple places. KrebsOnSecurity plans to delve into the origins of Kimwolf in 2026, highlighting its unique and highly invasive means of spreading digital disease.
Show sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
Information Snippets
-
Stark Industries Solutions Ltd., a bulletproof hosting provider, was sanctioned by the EU in 2025 but continued operations through rebranding and asset transfers.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
Cryptomus, a Canadian financial firm, was fined $176 million for violating anti-money laundering laws in October 2025.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
Researchers and U.S. federal agents linked a series of cyberheists to stolen master passwords from LastPass in 2022.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
Phishing operations, including voice phishing and SMS phishing, were extensively covered, revealing the use of legitimate services from Apple and Google.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
The Funnull content delivery network, linked to China-based gambling and money laundering, was sanctioned by the U.S. government in May 2025.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
Pakistan arrested 21 individuals linked to the Heartsender phishing and malware service in May 2025.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
The Aisuru botnet was responsible for record-breaking DDoS attacks in 2025, later shifting focus to renting infected IoT devices for proxy services.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23
-
The Kimwolf botnet, with approximately 1.83 million compromised devices, was identified as the world's largest and most dangerous botnet by Chinese security firm XLab.
First reported: 29.12.2025 22:231 source, 1 articleShow sources
- Happy 16th Birthday, KrebsOnSecurity.com! — krebsonsecurity.com — 29.12.2025 22:23