World's third largest botnet taken down
Grum, the botnet credited with sending out around 18 billion spam emails a day, has been shutdown.

Security researchers have taken down a four year old botnet responsible for generating around 18 billion spam emails a day.
The Grum botnet was credited with creating more than 33 per cent of the world's spam email at the peak of its power in January 2012. In recent times, this figure is understood to have slumped to 18 per cent.
The botnet's demise was confirmed by security vendor FireEye in a blog post after several overseas command and control (CnC) servers, which were responsible for powering Grum, were shut down.
The posts states that Grum's termination was the result of a group effort, which saw FireEye security researcher, Atif Mushtaq, team up with spam monitoring specialist Spamhaus, ISPs and several other research teams from across the globe.
"After they got all the evidence from my side, they moved quickly passing this intelligence back to their contacts in Ukraine and Russia," said Mushtaq in his blog post.
"As a result of this overnight operation, all six servers [currently powering Grum] in the Ukraine and the original Russian server were dead as of today.
"Grum's takedown resulted from the efforts of many individuals. This collaboration is sending a strong message to all scammers," he added.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
According to Spamhaus' figures, Grum used an average of 120,000 IP addresses to distribute its emails. This figure was slashed to 21,505 as soon as the CnC servers were shut off.
"Most of the spam botnets that used to keep their CnCs in the USA and Europe have moved to countries like Panama, Russia, and Ukraine thinking that no one can touch them in these comfort zones. We have proven them wrong this time," Mushtaq added.
-
M&S suspends online sales as 'cyber incident' continues
News Marks & Spencer (M&S) has informed customers that all online and app sales have been suspended as the high street retailer battles a ‘cyber incident’.
By Ross Kelly
-
Manners cost nothing, unless you’re using ChatGPT
Opinion Polite users are costing OpenAI millions of dollars each year – but Ps and Qs are a small dent in what ChatGPT could cost the planet
By Ross Kelly
-
Malicious WordPress plugin installed backdoor on thousands of websites
News Widget plugin spewed spam to unsuspecting victims
By Rene Millman
-
711 million data records revealed in spambot dump
News The data contains email addresses, passwords and server information too
By Zach Marzouk
-
Security experts uncover Tinder porn site spam scheme
News Chatbots use verification offers to lure in victims
By Adam Shepherd
-
Spammers selling fake tickets for Rio Olympics 2016
News Fraudsters have created fake ticketing websites to trick users
By Adam Shepherd
-
PPI companies punished for sending spam texts
News One company was fined £80,000 for sending 1.3 million texts to unsuspecting victims
By Clare Hopping
-
Fake WHO email about Ebola spreads malware
News Advice email from “World Health Organization” harbours its own virus
By Rene Millman
-
EE fixes spam Orange "Magic Numbers" text message glitch
News EE in firing line over deluge of spam messages sent to customers
By Caroline Donnelly
-
Why security vendors need a red card during the World Cup
In-depth The World Cup is being seized on by security vendors to spread FUD. Davey Winder's not impressed
By Davey Winder