Application security, Malware, Threat Management

Google disrupts Glupteba botnet, sues operators

Share
The Google corporate logo hangs outside the Google Germany offices on Aug. 31, 2021, in Berlin. (Photo by Sean Gallup/Getty Images)

Google announced Tuesday that it coordinated with industry partners to disrupt a botnet made up of a million infected devices, as well as suing its operators, which are believed to be based in Russia.

In a statement posted to its blog, Royal Hansen, vice president of security, and Halimah DeLaine Prado, general counsel, described how Google’s Threat Analysis Group tracked the Glupteba botnet that was infecting Windows and other Internet of Things devices. 

“Glupteba is notorious for stealing users’ credentials and data, mining cryptocurrencies on infected hosts, and setting up proxies to funnel other people’s internet traffic through infected machines and routers,” they wrote.

Glupteba’s operators lost control of the botnet after Google and its partners disrupted their command-and-control infrastructure. 

Hansen and Prado wrote that they think the lawsuit against the two operators of the blockchain-enabled botnet, filed in the Southern District of New York, will set a precedent that will create legal liabilities and risk for operators, and will help deter future activity. 

They noted that blockchain technology allows botnets to recover more quickly from disruption, and Google is working with industry and government to combat the use of botnets such as Glupteba. 

“We don’t just plug security holes, we work to eliminate entire classes of threats for consumers and businesses whose work depends on the Internet.”

An In-Depth Guide to Application Security

Get essential knowledge and practical strategies to fortify your applications.
Stephen Weigand

Stephen Weigand is managing editor and production manager for SC Media. He has worked for news media in Washington, D.C., covering military and defense issues, as well as federal IT. He is based in the Seattle area.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.