CrowdStrike and Google take down botnet used by hackers to target software developers in supply chain attacks

TL;DR AI
2 min readKey summary
CrowdStrike said it helped disrupt four command-and-control channels linked to the Glassworm botnet.
The botnet used malicious extensions, search ads, and stolen credentials to infect developer systems and plant malware in open-source projects.
Attackers reportedly poisoned more than 300 GitHub repositories, creating supply-chain risk for downstream organizations.
The takedown by CrowdStrike, Google, and Shadowserver helps limit a campaign that could spread from one developer to many victims.



