Skip to main content

News report

US disrupts Russian Cyclops Blink botnet before being used in attacks

BleepingComputer, April 6, 2022. The 6 April 2022 announcement of the disruption of the Cyclops Blink botnet controlled by the Russian-backed Sandworm group, targeting WatchGuard Firebox firewalls and ASUS routers, before it was used in attacks..

Source type
News report
Published
April 6, 2022
Research grade
S2
Used in entries
1

Bibliographic record

Publisher
BleepingComputer
Published
April 6, 2022
Source type
News report
Research grade
Source grade S2
Language
English
Official record
Not an official publication
What it supports
The 6 April 2022 announcement of the disruption of the Cyclops Blink botnet controlled by the Russian-backed Sandworm group, targeting WatchGuard Firebox firewalls and ASUS routers, before it was used in attacks.
Dataset id
src_bleepingcomputer_cyclops_blink_disrupted

Research notes

  • By Sergiu Gatlan.
  • Cited as the absence of a documented resurgence (res_cyclops_blink_none); the article itself records only the disruption, so it cannot positively evidence a negative.

How this source is used

Cited 1 time across 1 record type.

The role on each citation records what the source was relied on for. A primary source establishes the fact, a supporting source corroborates it, technical evidence describes the infrastructure, and a later outcome records what happened afterwards.

Sources were reviewed to a research cutoff of August 23, 2026. Addresses recorded after that date are not reflected here.

Cited by

Later activity

1 citation

Cited for activity recorded after the takedown.