Signal
FBI and Google disrupt NetNut residential proxy network using millions of hijacked devices
Evidence first: scan the strongest sources, then decide whether to go deeper.
Published 2026-07-02 18:54 UTCUpdated 2026-07-03 16:28 UTC
rss
cveexploitsbreachesmalwarethreat_actorsadvisories
Trend in the last 24h
Current brief openSource links open
This current signal is open on the public brief with summary, metadata, source links, and full evidence. Pro adds compare-over-time, alerts, exports, and workflow.
No card needed for the free brief.
Evidence trail (top sources)
top sources (4 domains)domains are deduped. counts indicate coverage, not truth.4 top sources shown
Overview
The FBI, Google, and private-sector partners have dismantled NetNut, a major residential proxy network that secretly hijacked around 2 million home devices including routers and smart TVs.
Entities
GoogleFBILumenNetNutPopaMirai
Score total
1.47
Momentum 24h
4
Posts
4
Origins
4
Source types
1
Duplicate ratio
0%
Why now
- The disruption occurred recently, reflecting ongoing efforts to combat residential proxy abuse.
- NetNut's network was actively used by threat actors, posing immediate risks to internet security.
- The scale of compromised devices highlights the urgency of addressing IoT and home device security vulnerabilities.
Why it matters
- Disrupting NetNut reduces cybercriminals' ability to anonymize attacks using hijacked home devices.
- The takedown limits the infrastructure supporting Mirai DDoS botnet variants and other malicious activities.
- Collaboration between law enforcement and private sector shows effective response to large-scale cyber threats.
LLM analysis
Topic mix: lowPromo risk: lowSource quality: high
Recurring claims
- NetNut operated a residential proxy network using millions of hijacked home devices including routers and smart TVs.
- The FBI and Google disrupted NetNut, significantly reducing its pool of usable devices and degrading its network.
- NetNut was used by cybercriminals and nation-state actors to mask identities and route malicious traffic, including Mirai DDoS botnet variants.
How sources frame it
- SecurityWeek: neutral
All evidence
All evidence
SecurityWeek report on NetNut disruption
securityweek.com · securityweek.com · 2026-07-03 08:13 UTC
FBI Disrupts Widely Used NetNut Residential Proxy Service
BankInfoSecurity · bankinfosecurity.com · 2026-07-03 16:28 UTC
FBI, Google Take Down NetNut Proxy Network Used by Cyber Threat Actors
Infosecurity Magazine · infosecurity-magazine.com · 2026-07-03 09:35 UTC
Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices
thehackernews · thehackernews.com · 2026-07-02 18:54 UTC
Show filters & breakdown
Posts loaded: 0Publishers: 4Origin domains: 4Duplicates: -
Showing 4 / 0
Top publishers (this list)
- securityweek.com (1)
- BankInfoSecurity (1)
- Infosecurity Magazine (1)
- thehackernews (1)
Top origin domains (this list)
- securityweek.com (1)
- bankinfosecurity.com (1)
- infosecurity-magazine.com (1)
- thehackernews.com (1)