ZeroSecurity - Information Security News
  • Home
  • Security
    • Exploits
    • Mobile Security
  • Malware
  • Breaches
  • Crypto
  • Privacy
  • Tech
    • AI
    • Downloads
      • Malwarebytes
      • Exploits
      • Paper Downloads
    • Reviews
No Result
View All Result
SUBSCRIBE
ZeroSecurity - Information Security News
  • Home
  • Security
    • Exploits
    • Mobile Security
  • Malware
  • Breaches
  • Crypto
  • Privacy
  • Tech
    • AI
    • Downloads
      • Malwarebytes
      • Exploits
      • Paper Downloads
    • Reviews
No Result
View All Result
ZeroSecurity - Information Security News
No Result
View All Result
Home Malware

FBI Shuts Down Notorious IPStorm Botnet, Arrests Mastermind Sergei Makinin after Four-Year Cybercrime Spree

Paul by Paul
November 21, 2023
in Malware
Reading Time: 3 mins read
FBI dismantles IPStorm botnet, arrests Sergei Makinin, ending a 4-year cybercrime spree. A major win against global online threats.
Share on FacebookShare on Twitter

The FBI has successfully dismantled the notorious IPStorm botnet proxy network, a criminal operation that emerged in 2019 and initially targeted Windows systems. The network later expanded its reach to devices operating on various systems. The law enforcement agency reported this week that the network, along with its infrastructure, has been taken down, and its creator, Sergei Makinin, a Russian and Moldovan national, is now in custody after pleading guilty to three related criminal charges. The FBI revealed that Makinin ran the operation from at least June 2019 to December 2022 and could face up to 30 years in prison.

You might also like

Chinese Hackers Hijack Notepad++ Updates in 6-Month Supply Chain Campaign

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

DoubleClickjacking – The Stealthy New Web Exploit Threatening User Security

The operation marks the end of a four-plus-year run of the botnet, which, according to law enforcement authorities, had a global impact. Makinin claimed on his website that the botnet included over 23,000 proxies collected worldwide and boasted earnings of at least $550,000 from the illicit operation, as reported by the FBI.

As part of his plea agreement, Makinin is forfeiting cryptocurrency wallets associated with the scheme. However, no sentencing date has been announced yet.

Makinin’s malware was designed to transform infected devices into proxies within a massive botnet. These proxies were then offered for access through Makinin’s websites, proxx[.]io and proxx[.]net. Customers seeking to conceal their internet activities would pay substantial amounts to route traffic through thousands of infected computers, creating a lucrative enterprise for Makinin.

The FBI emphasized the global reach of the botnet, affecting thousands of internet-connected devices across various countries, including Puerto Rico. The investigation was conducted by the FBI cyber team in San Juan, with support from legal attaché offices in Madrid, Spain, and Santo Domingo in the Dominican Republic, as well as collaboration with law enforcement agencies in both countries and Interpol. The National Cyber-Forensics and Training Alliance, which includes cybersecurity vendors Bitdefender, Anomali, and Intezer, also played a role in the effort.

Joseph González, Special Agent in Charge of the FBI’s San Juan Field Office, commented on the challenges posed by cybercriminals who seek anonymity, highlighting the need for law enforcement to address such criminal activity conducted through cybernetic means.

The FBI clarified that its capabilities in this case were limited to disabling the botnet’s infrastructure, preventing the identification of owners or users of the infected computers within the network.

The malware used in the botnet, named InterPlanetary Storm, utilized the InterPlanetary File System peer-to-peer network, allowing infected systems to communicate directly and via nodes. Built on the Go programming language, the malware targeted Windows initially but later expanded its reach to Android, Mac OS, and Linux-based systems.

The threat of botnets continues to evolve, with cybercriminals adopting more modern languages, like Go, to evade detection. The fast-growing nature of botnets poses an increasing risk to corporate security, as highlighted in a report by network visibility vendor Netscout. In 2022, Netscout identified 1.3 million DDoS-capable botnet nodes, and in the first half of 2023, the vendor tracked 592,373 nodes, demonstrating the ongoing evolution and persistence of these cyber threats.

Tags: botnetInterPlanetary StormP2P
Previous Post

Researchers Expose Gaza Charity Crypto Scam

Next Post

China Energy Giant, CEEC, Falls Victim to Rhysida Ransomware Attack

Paul

Paul

Editor and chief at ZeroSecurity. Expertise includes programming, malware analysis, and penetration testing. If you would like to write for ZeroSecurity, please click "Contact us" at the bottom of the page.

Recommended For You

Chinese Hackers Hijack Notepad++ Updates in 6-Month Supply Chain Campaign

Chinese Hackers Hijack Notepad++ Updates in 6-Month Supply Chain Campaign

February 6, 2026
Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

January 30, 2026

DoubleClickjacking – The Stealthy New Web Exploit Threatening User Security

January 1, 2025

BadBox Botnet Infects Over 190,000 Android Devices Worldwide

December 20, 2024

FBI Warns of HiatusRAT Targeting Network Devices Worldwide

December 18, 2024

Was Deloitte Hacked Again? Ransomware Group Claims They Did

December 9, 2024

Related News

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

Malicious Chrome Extensions Steal AI Data and Hijack Revenue in DarkSpectre Campaign

January 30, 2026
KPMG Netherlands Listed as Victim by Nova Ransomware Group

KPMG Netherlands Listed as Victim by Nova Ransomware Group

January 24, 2026
RansomHouse Claims Breach of Key Apple Assembler Luxshare

RansomHouse Claims Breach of Key Apple Assembler Luxshare

January 20, 2026
ZeroSecurity - Information Security News

We cover the latest in technology news, Crypto, Artificial Intelligence, and the threat trends impacting these sectors.

Categories

Piracy

Tutorials

Programming

Malware Analysis

Downloads

  • Contact us
  • Press
  • Writers
  • Privacy Policy
  • Terms of Service

© 2026 ZeroSecurity, All Rights Reserved.

No Result
View All Result
  • Home
  • Security
    • Tools
  • Exploits
  • Data Breaches
  • Malware
  • Privacy
  • Mobile Security
  • Contact Us
    • Press
  • Privacy Policy

© 2026 ZeroSecurity, All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.