{"id":114572,"date":"2020-10-16T21:23:18","date_gmt":"2020-10-17T04:23:18","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2020\/10\/u-s-cyber-command-says-it-nuked-trickbot-but-microsoft-and-chums-claim-credit"},"modified":"2020-10-16T21:23:18","modified_gmt":"2020-10-17T04:23:18","slug":"u-s-cyber-command-says-it-nuked-trickbot-but-microsoft-and-chums-claim-credit","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2020\/10\/u-s-cyber-command-says-it-nuked-trickbot-but-microsoft-and-chums-claim-credit","title":{"rendered":"U.S. Cyber Command Says it Nuked Trickbot, but Microsoft and Chums Claim Credit"},"content":{"rendered":"<p><\/p>\n<p><iframe style=\"display: block; margin: 0 auto; width: 100%; aspect-ratio: 4\/3; object-fit: contain;\" src=\"https:\/\/www.youtube.com\/embed\/huDZoqXw--I?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; encrypted-media; gyroscope;\n   picture-in-picture\" allowfullscreen><\/iframe><\/p>\n<p><strong>In the dog days of last week,<\/strong> a shadowy group of secret sources in U.S. Cyber Command whispered to reporters that they\u2019d disrupted a huge, ransomware-spewing botnet. <em>Trickbot<\/em>, closely related to Emotet and Ryuk, is believed to be managed by Russian criminals.<\/p>\n<p><strong>But today, Microsoft and friends are saying<\/strong> the disruption was <em>actually<\/em> down to them\u2014awks. The consortium of industry players has developed a new legal mechanism to remove the botnet\u2019s servers from the net and they say it\u2019s working.<\/p>\n<p><strong>They\u2019re basically using international copyright law<\/strong> to do takedowns, arguing that \u201cmalicious use\u201d of Windows and Office is actionable in court. In today\u2019s <a href=\"https:\/\/securityboulevard.com\/tag\/sb-blogwatch\/\" target=\"_blank\" rel=\"noopener noreferrer\"><i>SB Blogwatch<\/i><\/a>, we DMCA ur C2 and pwn ur zombies.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In the dog days of last week, a shadowy group of secret sources in U.S. Cyber Command whispered to reporters that they\u2019d disrupted a huge, ransomware-spewing botnet. Trickbot, closely related to Emotet and Ryuk, is believed to be managed by Russian criminals. But today, Microsoft and friends are saying the disruption was actually down to [\u2026]<\/p>\n","protected":false},"author":513,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[34,1496],"tags":[],"class_list":["post-114572","post","type-post","status-publish","format-standard","hentry","category-cybercrime-malcode","category-law"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/114572","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/513"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=114572"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/114572\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=114572"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=114572"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=114572"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}