Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
Ngioweb Remains Active 7 Years Later
Threat Actors
May 08, 2025
levelblue
Ngioweb, a proxy server botnet first identified in 2017, remains active with minimal code changes. It has grown from 3,000 daily IPs in 2020 to nearly 30,000 in 2024. It targets residential ISP users, who make up over 75% of infected systems.
Read More
Ngioweb Botnet
Residential Proxies
NSOCKS
IoT Malware
Zyxel Routers
Publisher
Previous
Iranian Cyber Actors Impersonate Model Agency in Suspec ...
Threat Actors
Next
Using Blob URLs to Bypass SEGs and Evade Analysis
Malware and Vulnerabilities