SANS Stormcast Friday, January 30th, 2026: Residential Proxy Networks; Clowdbot/Moltbot Themed Malware; eScan Malicious Updates
JAN 30, 20266 MIN
SANS Stormcast Friday, January 30th, 2026: Residential Proxy Networks; Clowdbot/Moltbot Themed Malware; eScan Malicious Updates
JAN 30, 20266 MIN
Description
<br/>
No Place Like Home Network: Disrupting the World's Largest Residential Proxy Network<br/>
Google dismantled the IPIDEA network that used residential proxies to route malicious traffic.<br/>
<a href="https://cloud.google.com/blog/topics/threat-intelligence/disrupting-largest-residential-proxy-network">https://cloud.google.com/blog/topics/threat-intelligence/disrupting-largest-residential-proxy-network</a><br/>
Fake Clawdbot VS Code Extension Installs ScreenConnect RAT<br/>
The news about Clawdbot (now Moltbot) is used to distribute malware, in particular malicious VS Code extensions.<br/>
<a href="https://www.aikido.dev/blog/fake-clawdbot-vscode-extension-malware">https://www.aikido.dev/blog/fake-clawdbot-vscode-extension-malware</a><br/>
Threat Bulletin: Critical eScan Supply Chain Compromise<br/>
Anti-virus vendor eScan was compromised, and its update servers were used to install malware on some customer systems.<br/>
<a href="https://www.morphisec.com/blog/critical-escan-threat-bulletin/">https://www.morphisec.com/blog/critical-escan-threat-bulletin/</a><br/>