World's third largest botnet taken down
Grum, the botnet credited with sending out around 18 billion spam emails a day, has been shutdown.

Security researchers have taken down a four year old botnet responsible for generating around 18 billion spam emails a day.
The Grum botnet was credited with creating more than 33 per cent of the world's spam email at the peak of its power in January 2012. In recent times, this figure is understood to have slumped to 18 per cent.
The botnet's demise was confirmed by security vendor FireEye in a blog post after several overseas command and control (CnC) servers, which were responsible for powering Grum, were shut down.
The posts states that Grum's termination was the result of a group effort, which saw FireEye security researcher, Atif Mushtaq, team up with spam monitoring specialist Spamhaus, ISPs and several other research teams from across the globe.
"After they got all the evidence from my side, they moved quickly passing this intelligence back to their contacts in Ukraine and Russia," said Mushtaq in his blog post.
"As a result of this overnight operation, all six servers [currently powering Grum] in the Ukraine and the original Russian server were dead as of today.
"Grum's takedown resulted from the efforts of many individuals. This collaboration is sending a strong message to all scammers," he added.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
According to Spamhaus' figures, Grum used an average of 120,000 IP addresses to distribute its emails. This figure was slashed to 21,505 as soon as the CnC servers were shut off.
"Most of the spam botnets that used to keep their CnCs in the USA and Europe have moved to countries like Panama, Russia, and Ukraine thinking that no one can touch them in these comfort zones. We have proven them wrong this time," Mushtaq added.
-
What to look out for at RSAC Conference 2025
Analysis Convincing attendees that AI can revolutionize security will be the first point of order at next week’s RSA Conference – but traditional threats will be a constant undercurrent
By Rory Bathgate
-
Ransomware attacks are rising — but quiet payouts could mean there's more than actually reported
News Ransomware attacks continue to climb, but they may be even higher than official figures show as companies choose to quietly pay to make such incidents go away.
By Nicole Kobie
-
Malicious WordPress plugin installed backdoor on thousands of websites
News Widget plugin spewed spam to unsuspecting victims
By Rene Millman
-
711 million data records revealed in spambot dump
News The data contains email addresses, passwords and server information too
By Zach Marzouk
-
Security experts uncover Tinder porn site spam scheme
News Chatbots use verification offers to lure in victims
By Adam Shepherd
-
Spammers selling fake tickets for Rio Olympics 2016
News Fraudsters have created fake ticketing websites to trick users
By Adam Shepherd
-
PPI companies punished for sending spam texts
News One company was fined £80,000 for sending 1.3 million texts to unsuspecting victims
By Clare Hopping
-
Fake WHO email about Ebola spreads malware
News Advice email from “World Health Organization” harbours its own virus
By Rene Millman
-
EE fixes spam Orange "Magic Numbers" text message glitch
News EE in firing line over deluge of spam messages sent to customers
By Caroline Donnelly
-
Why security vendors need a red card during the World Cup
In-depth The World Cup is being seized on by security vendors to spread FUD. Davey Winder's not impressed
By Davey Winder