PrivacySignal
Breach

NetNut proxy network disrupted, 2 million infected devices cut off

BleepingComputer · · International · Data Breaches

A joint operation involving Google has dismantled NetNut, a residential proxy network that routed traffic through roughly two million compromised Android devices, including smart TVs and streaming boxes. The disruption cut off access to the network of infected consumer devices that had been hijacked without their owners' knowledge.

Why this matters: Most people with a smart TV or streaming box have no idea it could be running someone else's traffic. That is exactly what made NetNut useful — ordinary home devices, quietly hijacked, turned into cover for whoever was paying to use the network. The owners never consented and probably never knew. This takedown matters, but the underlying problem does not go away. Consumer devices get weak security, long lifecycles, and almost no visibility. Until that changes, the next version of this network is just waiting to be built.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Deep Signal · Part I of III

The Algorithm Said So

Federal rulemakers are deciding what to do when artificial intelligence produces the kind of conclusion that once required an expert. They disagree about how to regulate it. They also disagree about whether the problem has arrived.

· 10 min read Read →

Related stories

Breach
The Record · · International

Arizona courts say hackers stole info on more than 1.3 million people

Arizona courts disclosed a data breach affecting more than 1.3 million people after hackers accessed the state's Fines/Fees and Restitution Enforcement Program, which collects debts tied to traffic and criminal violations.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
Breach
BleepingComputer · · International

PoeLLM malware infects exposed AI servers in cryptomining attacks

A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads. [...]

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai#security Read original →
Breach
BleepingComputer · · International

Ransomware has a new target. Is your backup ready?

Ransomware groups are increasingly targeting backup infrastructure to eliminate recovery options and increase pressure on victims to pay. Kaseya explains why organizations need isolated, immutable, and regularly tested backups that attackers cannot easily reach. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
The Record · · International

Senate passes healthcare cybersecurity bill after 190 million impacted by Change Healthcare breach

The U.S. Senate passed the Health Care Cybersecurity and Resiliency Act of 2026 by unanimous consent, a bill that would expand federal cybersecurity requirements for healthcare organizations. The legislation follows the Change Healthcare breach, which affected an estimated 190 million people.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · General readers · Policy

#breach#healthcare#privacy Read original →