DanaBot malware operators exposed via C2 bug added in 2022
In the most recent law enforcement action, the DanaBot malware operation was identified, indicted, and its operations dismantled due to a vulnerability introduced in the June 2022 update.
DanaBot is a malware-as-a-service (MaaS) platform that was operational from 2018 to 2025 and was used for distributed denial of service (DDoS) attacks, remote access, financial fraud, and credential theft.
The vulnerability, called 'DanaBleed,' was found by Zscaler's ThreatLabz researchers, who claim that a memory leak gave them a thorough look into the inner workings of the malware and its creators.
The international law enforcement activity known as 'Operation Endgame' was able to shut down DanaBot infrastructure and indict 16 members of the threat group by using the vulnerability read more ab...


