Cyber Crime
May 28, 20262 min read220
Glassworm Botnet Disrupted After Resilient C2 Infrastructure Takedown
The Glassworm botnet, targeting developers in software supply-chain attacks, has been disrupted following the takedown of its resilient command-and-control infrastructure relying on Solana blockchain transactions and the BitTorrent DHT network.
By Titan Layer Editorial Team
Published on May 28, 2026
Source: BleepingComputer
## Introduction
Recently, the Glassworm botnet, which has gained notoriety for targeting developers in supply chain attacks, was dismantled. This action was taken by security researchers who managed to disrupt the botnet's command and control (C2) infrastructure, which was notably resilient due to its use of innovative technologies.
## What Happened?
The operation that led to the disruption of Glassworm was complex and well-coordinated. The botnet's C2 infrastructure utilized Solana blockchain transactions, allowing the botnet operators to remain anonymous and making it difficult to identify and remove their servers. Additionally, the botnet also leveraged the BitTorrent DHT network, a decentralized system that made communication between the bots and the control server more robust and less susceptible to interruptions.
Researchers were able to map the botnet's infrastructure and, through a joint effort, dismantle its operations. This action was the result of months of investigation and collaboration among various cybersecurity entities.
## Who Was Impacted?
The primary targets of the Glassworm botnet were developers and technology companies, which are often targets of supply chain attacks. Such attacks can lead to software compromises and leaks of sensitive data, causing significant harm to companies and end users. The disruption of Glassworm is a relief for the development community, which can now operate with a reduced risk of attacks.
## Key Points
- The Glassworm botnet was dismantled following the disruption of its C2 infrastructure.
- The botnet utilized Solana blockchain and BitTorrent DHT network for its operations.
- The takedown operation involved months of investigation and collaboration among security researchers.
- The impact is significant for developers and technology companies, reducing the risk of supply chain attacks.
## What This Case Teaches
1. Collaboration among security researchers is crucial for dismantling sophisticated botnets.
2. The use of decentralized technologies, such as blockchain and BitTorrent, can complicate threat identification.
3. Supply chain security should be a priority for developers and technology companies.
4. Proactive and innovative measures are essential to combat emerging cyber threats.
Article information
Editorial author:Titan Layer Editorial Team
Original source:BleepingComputer
Original publisher:bleepingcomputer.com
Original author:bleepingcomputer.com
Original publication date:—
Reference link:https://www.bleepingcomputer.com/news/security/glassworm-botnet-disrupted-after-resilient-c2-infrastructure-takedown/
Titan Layer publication date:May 28, 2026
Content type:Curated summary and editorial analysis
Share this article
Related Articles
Cyber Crime
FBI Takes Down NightmareStresser DDoS Platform
Titan Layer
5d ago
Cyber Crime
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
Titan Layer
9/13/2026
Cyber Crime
Ukrainian Conti Ransomware Developer Sentenced to 4 Years in US Prison
Titan Layer
9/13/2026