Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

CrowdStrike and Google take down botnet used by hackers to target open source software developers

Tech CEOs apparently suffer from AI psychosis

Triomics raises $22 million to bring oncology AI to cancer centers

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Why Google’s AI Can’t Type Google (or Anything)

    28 May 2026

    ElevenLabs’ new music generation model can switch genres mid-track

    27 May 2026

    DuckDuckGo Installs Up 30% as Users Reject Google’s AI Search to ‘Force-Feed’ Them

    27 May 2026

    The Pope’s encyclical on artificial intelligence is not really about artificial intelligence

    25 May 2026

    Everyone is navigating real-time AI security — even Google

    25 May 2026
  • Apps

    Airbnb-backed WeRoad raises $58 million to bring its group travel platform to the US

    28 May 2026

    Spotify now lets you “clip” moments from your favorite podcast

    27 May 2026

    Truecaller is entering the eSIM business to diversify its revenue streams

    27 May 2026

    Universal Music Group and TikTok renew agreement to combat unauthorized AI music

    26 May 2026

    Google is pitching an ecosystem of AI agents to consumers who might not buy it

    26 May 2026
  • Crypto

    Startup Battlefield 200 applications close today

    27 May 2026

    5 days left: Save up to $410 on Disrupt 2026 passes

    25 May 2026

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026
  • Fintech

    Robinhood now allows your AI agents to trade stocks

    28 May 2026

    Disrupt 2026 Early Bird ticket savings expire in 3 days

    27 May 2026

    Disrupt 2026 Early Bird ticket prices end May 29

    26 May 2026

    Startup Battlefield 200 applications close before May 27 | TechCrunch

    26 May 2026

    General Catalyst just led a $63 million bet in India’s travel payments market

    21 May 2026
  • Hardware

    The Dreamie alarm clock made me stop using my phone in bed

    26 May 2026

    6 kitchen gadgets that make adult life easier

    25 May 2026

    Xreal, Google’s smart glasses partner, believes it has finally conquered this extremely difficult industry

    25 May 2026

    We tested Google’s AI glasses and they’re almost there

    23 May 2026

    Finnish phone maker HMD ropes Indian AI chatbot into new smartphone to reach local market

    22 May 2026
  • Media & Entertainment

    Meta launches Instagram, Facebook and WhatsApp subscriptions, with more to follow, including AI plans

    27 May 2026

    Spotify now lets you view narrated magazine articles as well

    26 May 2026

    Spotify launches an audiobook creation tool powered by ElevenLabs

    22 May 2026

    New York City Mayor Zohran Mamdani Takes To Twitch To Chat With New Yorkers

    21 May 2026

    Clouted wants to take the guesswork out of making short videos go viral

    21 May 2026
  • Security

    CrowdStrike and Google take down botnet used by hackers to target open source software developers

    28 May 2026

    UK Visa Portal Revealed Thousands of Applicants’ Passports and Selfies — Then Invited Lawyers to Ask Us

    27 May 2026

    UK Visa portal leaked thousands of applicant passports and selfies online – and hasn’t fixed the leak

    27 May 2026

    Ghost hackers: the unsolved cybersecurity mystery

    26 May 2026

    Scammers abuse an internal Microsoft account to send spam links

    22 May 2026
  • Startups

    Tech CEOs apparently suffer from AI psychosis

    28 May 2026

    SOND, a sleep tech startup from former Bose sleep chief, exits stealth with $7 million

    27 May 2026

    What we’re looking for in Startup Battlefield 2026 and how to apply in time for the May 27 deadline

    27 May 2026

    What ClickUp’s mass layoff tells us about the future of work

    25 May 2026

    SolarSquare in talks to raise up to $60M as India’s rooftop solar market draws big VC interest

    24 May 2026
  • Transportation

    FAA orders SpaceX to investigate Starship V3 booster failure

    27 May 2026

    The Trump administration is allowing Volvo to continue selling connected cars in the US

    27 May 2026

    Ferrari’s first EV is not for you

    26 May 2026

    Global EV market becomes K-shaped as US falls behind

    25 May 2026

    Tesla’s Full Self-Driving software is creeping into Europe

    25 May 2026
  • Venture

    Triomics raises $22 million to bring oncology AI to cancer centers

    28 May 2026

    ClickHouse triples annual revenue to $250 million, charting a path to an IPO

    27 May 2026

    The pitch trick that helped an eSports startup raise $20 million when VCs only wanted AI

    25 May 2026

    Peec, one of Berlin’s up-and-coming startups, more than doubled annual revenue in months to $10 million, sources say

    23 May 2026

    Convective Capital Raises $85M Fund to Build Disaster Resilience

    22 May 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»CrowdStrike and Google take down botnet used by hackers to target open source software developers
Security

CrowdStrike and Google take down botnet used by hackers to target open source software developers

techtost.comBy techtost.com28 May 202603 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Crowdstrike And Google Take Down Botnet Used By Hackers To
Share
Facebook Twitter LinkedIn Pinterest Email

CrowdStrike, in partnership with Google and Shadowserver, a non-profit organization that scans and monitors the internet for cyberattacks, took down a botnet used by cybercriminals to push malware and steal passwords from open source software developers.

THE removal function was aimed at disrupting the activities of the cybercriminals behind the so-called Glassworm botnet, who have been targeting the broader open source software supply chain for two years, according to CrowdStrike.

In recent months, several hacker groups have targeted developers and open source projects to push malware to companies and organizations that in turn use that software. These attacks can be effective because they exploit the trust that companies have in the code hosted on platforms like GitHub and the workers behind that code.

“Adversaries are no longer just targeting products, they are targeting the developers who build them,” CrowdStrike wrote in its report on the takedown operation. “Developers uniquely represent high-value targets: a breach of a single developer’s workstation can collapse into a supply chain compromise affecting thousands of downstream organizations and users.”

Glassworm hackers used several strategies to push their malicious code. This included publishing malicious extensions to a marketplace used by developers. malicious advertising — where hackers pay for sponsored search results that trick victims into downloading malware. and using credentials stolen in previous hacks, which allowed developer accounts to be hacked and malware to be planted in their code.

In the end, the hackers were able to poison – as CrowdStrike put it – more than 300 GitHub repositories.

Contact us

Do you have more information about the Glassworm hacking group? Or for other supply chain attacks? From a non-working device, Lorenzo Franceschi-Bicchierai can be reached securely on Signal at +1 917 257 1382 or via Telegram, Keybase and Wire @lorenzofb or via email.

CrowdStrike said it was able to take down four command and control channels used by the Glassworm hackers, which cut off the hackers’ access to infected computers and prevented them from delivering more malware.

The command and control servers were based on the Solana blockchain, the BitTorrent peer-to-peer network, Google Calendar and virtual private servers, according to CrowdStrike.

It’s unclear what legal or technical authority CrowdStrike and others acted on to take down the business. When asked by TechCrunch, CrowdStrike spokeswoman Kirsten Speas declined to comment beyond the company’s blog.

Last week, hackers breached several open source projects that pushed out malicious updates in a different hacking campaign called “Mini Shai-Hulud.” At least two OpenAI developers were hacked by this hacker group. In another supply chain attack in March, a suspected North Korean hacker took over the popular open source software development tool Axios, which is used by millions of developers.

Updated the number of compromised OpenAI developers and included feedback from CrowdStrike.

When you purchase through links in our articles, we may earn a small commission. This does not affect our editorial independence.

Botnet Crowdstrike cyber security cybercrime developers Google hacker hackers open open source software source supply chain attack supply chain security target
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleTech CEOs apparently suffer from AI psychosis
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Why Google’s AI Can’t Type Google (or Anything)

28 May 2026

UK Visa Portal Revealed Thousands of Applicants’ Passports and Selfies — Then Invited Lawyers to Ask Us

27 May 2026

ElevenLabs’ new music generation model can switch genres mid-track

27 May 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

CrowdStrike and Google take down botnet used by hackers to target open source software developers

28 May 2026

Tech CEOs apparently suffer from AI psychosis

28 May 2026

Triomics raises $22 million to bring oncology AI to cancer centers

28 May 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Robinhood now allows your AI agents to trade stocks

28 May 2026

Disrupt 2026 Early Bird ticket savings expire in 3 days

27 May 2026

Disrupt 2026 Early Bird ticket prices end May 29

26 May 2026
Startups

Tech CEOs apparently suffer from AI psychosis

SOND, a sleep tech startup from former Bose sleep chief, exits stealth with $7 million

What we’re looking for in Startup Battlefield 2026 and how to apply in time for the May 27 deadline

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.