Microsoft Orchestrates Coordinated Takedown of Necurs Botnet

Microsoft announced today a coordinated takedown of Necurs, one of the largest spam and malware botnets known to date, believed to have infected more than nine million computers worldwide. From a report: The takedown effort came after Microsoft and industry partners broke the Necurs DGA — the botnet’s domain generation algorithm, the component that generates random domain names. Necurs authors register DHA-generated domains weeks or months in advance and host the botnet’s command-and-control (C&C) servers, where bots (infected computers) connect to receive new commands. “We were then able to accurately predict over six million unique domains that would be created in the next 25 months,” said Tom Burt, Microsoft Vice President for Customer Security & Trust. Breaking the DGA allowed Microsoft and its industry partners to create a comprehensive list of future Necurs C&C server domains that they can now block and prevent the Necurs team from registering.

Read more of this story at Slashdot.

Source:
https://it.slashdot.org/story/20/03/10/1713232/microsoft-orchestrates-coordinated-takedown-of-necurs-botnet?utm_source=rss1.0mainlinkanon&utm_medium=feed