


Perceptive Security
SOC/SIEM Consultancy

Kimwolf Android botnet abuses residential proxies to infect internal devices
Published:
6 januari 2026 om 19:15:11
Alert date:
6 januari 2026 om 20:03:30
Source:
bleepingcomputer.com
The Kimwolf botnet, an Android variant of the Aisuru malware, has infected over two million hosts by exploiting vulnerabilities in residential proxy networks. The malware targets devices on internal networks through compromised residential proxy infrastructure. This represents a significant escalation in botnet operations, leveraging legitimate proxy services to bypass network security controls and reach internal systems that would normally be protected from external threats.
Technical details
Mitigation steps:
Affected products:
Android
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
