Government and industry partners have shut down the Sality botnet, and a nonprofit is now reaching out to victims whose machines may still need attention.
A multinational disruption of Sality shows how peer-to-peer malware can be weakened when defenders understand the protocol well enough to interfere with its trust layer.
A coordinated cyber disruption targeted Sality’s malware infrastructure, showing how defenders can still hit a long-running peer-to-peer botnet where it hurts most - its control plane.
A 23-year-old malware network was disrupted by targeting the way it finds peers and the web locations it uses to pull payloads.
Authorities disrupted the long-lived botnet by turning its peer-to-peer design into a liability, cutting thousands of infected computers off from operators.