Close Menu
  • Home
  • Opinion
  • Region
    • Africa
    • Asia
    • Europe
    • Middle East
    • North America
    • Oceania
    • South America
  • AI & Machine Learning
  • Robotics & Automation
  • Space & Deep Tech
  • Web3 & Digital Economies
  • Climate & Sustainability Tech
  • Biotech & Future Health
  • Mobility & Smart Cities
  • Global Tech Pulse
  • Cybersecurity & Digital Rights
  • Future of Work & Education
  • Trend Radar & Startup Watch
  • Creator Economy & Culture
What's Hot

A Man Who Wrote the Code Died in 2005. I Nonetheless Should Safe It

March 15, 2026

New Siri, Liquid Glass controls anticipated for WWDC 2026

March 15, 2026

With 2 factories within the Amazon, this biz sells 1 bil Brazil nuts/yr to 45 international locations

March 15, 2026
Facebook X (Twitter) Instagram LinkedIn RSS
NextTech NewsNextTech News
Facebook X (Twitter) Instagram LinkedIn RSS
  • Home
  • Africa
  • Asia
  • Europe
  • Middle East
  • North America
  • Oceania
  • South America
  • Opinion
Trending
  • A Man Who Wrote the Code Died in 2005. I Nonetheless Should Safe It
  • New Siri, Liquid Glass controls anticipated for WWDC 2026
  • With 2 factories within the Amazon, this biz sells 1 bil Brazil nuts/yr to 45 international locations
  • REVIEW: Gozney Arc Lite, prepare dinner 12″ pizzas in a conveyable pizza oven that weighs simply 12kg
  • Zari-Zardozi: women-led stitching networks and home-based craft
  • Zhipu AI Introduces GLM-OCR: A 0.9B Multimodal OCR Mannequin for Doc Parsing and Key Data Extraction (KIE)
  • TARS’s A1 Robotic Earns a Guinness World Information Title By way of Actual Industrial Work
  • LangChain Releases Deep Brokers: A Structured Runtime for Planning, Reminiscence, and Context Isolation in Multi-Step AI Brokers
Sunday, March 15
NextTech NewsNextTech News
Home - Global Tech Pulse - DanaBot malware operators uncovered through C2 bug added in 2022
Global Tech Pulse

DanaBot malware operators uncovered through C2 bug added in 2022

NextTechBy NextTechJune 11, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
Follow Us
Google News Flipboard
DanaBot malware operators uncovered through C2 bug added in 2022
Share
Facebook Twitter LinkedIn Pinterest Email


A vulnerability within the DanaBot malware operation launched in June 2022 replace led to the identification, indictment, and dismantling of their operations in a current regulation enforcement motion.

DanaBot is a malware-as-a-service (MaaS) platform lively from 2018 via 2025, used for banking fraud, credential theft, distant entry, and distributed denial of service (DDoS) assaults.

Zscaler’s ThreatLabz researchers who found the vulnerability, dubbed ‘DanaBleed,’ clarify {that a} reminiscence leak allowed them to achieve a deep peak into the malware’s inside operations and the folks behind it.

Leveraging the flaw to gather helpful intelligence on the cybercriminals enabled a world regulation enforcement motion named ‘Operation Endgame’ to take DanaBot infrastructure offline and indict 16 members of the risk group.

DanaBleed

The DanaBleed flaw was launched in June 2022 with DataBot model 2380, which added a brand new command and management (C2) protocol.

A weak point within the new protocol’s logic was within the mechanism that generated the C2 server’s responses to shoppers, which was supposed to incorporate randomly generated padding bytes however did not initialize newly allotted reminiscence for these.

Zscaler researchers collected and analyzed numerous C2 responses that, as a result of reminiscence leak bug, contained leftover information fragments from the server’s reminiscence.

This publicity is analogous to the HeartBleed drawback found in 2014, impacting the ever present OpenSSL software program.

On account of DanaBleed, a broad array of personal information was uncovered to the researchers over time, together with:

  • Risk actor particulars (usernames, IP addresses)
  • Backend infrastructure (C2 server IPs/domains)
  • Sufferer information (IP addresses, credentials, exfiltrated information)
  • Malware changelogs
  • Non-public cryptographic keys
  • SQL queries and debug logs
  • HTML and internet interface snippets from the C2 dashboard

For over three years, DanaBot operated in a compromised mode with out its builders or shoppers ever realizing they had been being uncovered to safety researchers.

This allowed focused regulation enforcement motion when sufficient information had been collected.

Leaked HTML data on the C2 server responses
Leaked HTML information on the C2 server responses
Supply: Zscaler

Though DanaBot’s core crew in Russia was merely indicted and never arrested, the seizure of crucial C2 servers, 650 domains, and practically $4,000,000 in cryptocurrency has successfully neutralized the risk for now.

It isn’t unlikely that the risk actors try to return to cybercrime operations sooner or later, however decreased belief from the hackers’ group might be a big impediment for them.

Tines Needle

Patching used to imply advanced scripts, lengthy hours, and limitless fireplace drills. Not anymore.

On this new information, Tines breaks down how fashionable IT orgs are leveling up with automation. Patch quicker, cut back overhead, and give attention to strategic work — no advanced scripts required.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
NextTech
  • Website

Related Posts

New Siri, Liquid Glass controls anticipated for WWDC 2026

March 15, 2026

Microsoft releases Home windows 11 OOB hotpatch to repair RRAS RCE flaw

March 15, 2026

Which phone-powered PC expertise is best?

March 14, 2026
Add A Comment
Leave A Reply Cancel Reply

Economy News

A Man Who Wrote the Code Died in 2005. I Nonetheless Should Safe It

By NextTechMarch 15, 2026

COMMENTARYWhen you stroll the expo flooring at any of the Black Hat or RSAC Conferences,…

New Siri, Liquid Glass controls anticipated for WWDC 2026

March 15, 2026

With 2 factories within the Amazon, this biz sells 1 bil Brazil nuts/yr to 45 international locations

March 15, 2026
Top Trending

A Man Who Wrote the Code Died in 2005. I Nonetheless Should Safe It

By NextTechMarch 15, 2026

COMMENTARYWhen you stroll the expo flooring at any of the Black Hat…

New Siri, Liquid Glass controls anticipated for WWDC 2026

By NextTechMarch 15, 2026

We’re nonetheless ready for New Siri… Apple introduction of its late Siri…

With 2 factories within the Amazon, this biz sells 1 bil Brazil nuts/yr to 45 international locations

By NextTechMarch 15, 2026

Brazil nuts are practically unimaginable to farm, however White Lion Meals has…

Subscribe to News

Get the latest sports news from NewsSite about world, sports and politics.

NEXTTECH-LOGO
Facebook X (Twitter) Instagram YouTube

AI & Machine Learning

Robotics & Automation

Space & Deep Tech

Web3 & Digital Economies

Climate & Sustainability Tech

Biotech & Future Health

Mobility & Smart Cities

Global Tech Pulse

Cybersecurity & Digital Rights

Future of Work & Education

Creator Economy & Culture

Trend Radar & Startup Watch

News By Region

Africa

Asia

Europe

Middle East

North America

Oceania

South America

2025 © NextTech-News. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Service
  • Advertise With Us
  • Write For Us
  • Submit Article & Press Release

Type above and press Enter to search. Press Esc to cancel.

Subscribe For Latest Updates

Sign up to best of Tech news, informed analysis and opinions on what matters to you.

Invalid email address
 We respect your inbox and never send spam. You can unsubscribe from our newsletter at any time.     
Thanks for subscribing!