Like all other internet abuse, bulletproof hosting does not just happen - it is enabled by facilitators such as network carriers, datacenter operators, IP brokers and domain registrars. Sometimes, malicious infrastructure agglomerates in the internet vicinity of such facilitators - why not join the show if your criminal competitors thrive there already?🧐 A particularly prolific example is πŸ‡©πŸ‡ͺaurologic GmbH (regular readers might recognize the name), as highlighted by Recorded Future in a report published on November 6 ‡️ #Cybercrime #BulletproofHosting #ThreatIntel #HostingProviders
If you keep a close eye on the DNS abuse landscape, you’ve probably noticed a rise in malicious activity and abuse reports linked to Traffic Distribution Systems (TDS) β€” infrastructure that’s fast becoming a go-to tool for phishing and other malicious campaigns. Earlier this year, our peers at Infoblox shared over 100,000 domains tied to Vextrio, a threat actor group notorious for its extensive TDS use. Needless to say, those domains are listed on the Spamhaus Domain Blocklist πŸ’ͺ ‡️ image
❗Here's the latest Spamhaus DROP listings, from the worst of the worst IP traffic: πŸ‘‰ SBL688496 - https://check.spamhaus.org/results?query=SBL688496 πŸ‘‰ SBL683400 - https://check.spamhaus.org/results?query=SBL688400 πŸ‘‰ SBL688345 - https://check.spamhaus.org/results?query=SBL688345 πŸ‘‰ SBL688338 - https://check.spamhaus.org/results?query=SBL688338 πŸ‘‰ SBL679050 - https://check.spamhaus.org/results?query=SBL679050 πŸ‘‰ SBL688313 - https://check.spamhaus.org/results?query=SBL688313 πŸ‘‰ SBL683028 - https://check.spamhaus.org/results?query=SBL683028 πŸ‘‰ SBL688302 - https://check.spamhaus.org/results?query=SBL688302 πŸ‘‰ SBL688281 - https://check.spamhaus.org/results?query=SBL688281 image
Go on… drop your spam in here. We dare you πŸ•·πŸ“¬ #CreepItClean image
Resharing a recent investigation for anyone who may have missed it the first time πŸ‘‡ Back in April, we started tracking a sharp surge in phishing campaigns routed through residential proxy networks. Digging deeper, our analysis points to a persistent China-nexus threat actor focused predominantly on Japan πŸ‡―πŸ‡΅ Catch up on the full story, including what we’ve seen so far and what might come next πŸ•΅οΈβ€΅οΈβ€΅οΈ #Phishing #Botnet #Spam #Cybercrime image
🌐 NEW DOMAIN TRENDING TERMS | 6 new entries linked to user behaviour and search activity: system (#2), engine (#4), search (#6), internet (#9), information (#10), keyword (#11). πŸ€– With algorithms shifting towards Large Language Models (LLMs), are we seeing an increase in black hat SEO activity? 🎩 Learn more in the latest #DomainReputation Update πŸ‘‡πŸ‘‡ #Phishing #DomainAbuse #LatestInsights image