Back to News
Cyber Crime
May 28, 20262 min read220

Glassworm Botnet Disrupted After Resilient C2 Infrastructure Takedown

The Glassworm botnet, targeting developers in software supply-chain attacks, has been disrupted following the takedown of its resilient command-and-control infrastructure relying on Solana blockchain transactions and the BitTorrent DHT network.

Glassworm Botnet Disrupted After Resilient C2 Infrastructure Takedown

By Titan Layer Editorial Team

Published on May 28, 2026

Source: BleepingComputer

## Introduction Recently, the Glassworm botnet, which has gained notoriety for targeting developers in supply chain attacks, was dismantled. This action was taken by security researchers who managed to disrupt the botnet's command and control (C2) infrastructure, which was notably resilient due to its use of innovative technologies. ## What Happened? The operation that led to the disruption of Glassworm was complex and well-coordinated. The botnet's C2 infrastructure utilized Solana blockchain transactions, allowing the botnet operators to remain anonymous and making it difficult to identify and remove their servers. Additionally, the botnet also leveraged the BitTorrent DHT network, a decentralized system that made communication between the bots and the control server more robust and less susceptible to interruptions. Researchers were able to map the botnet's infrastructure and, through a joint effort, dismantle its operations. This action was the result of months of investigation and collaboration among various cybersecurity entities. ## Who Was Impacted? The primary targets of the Glassworm botnet were developers and technology companies, which are often targets of supply chain attacks. Such attacks can lead to software compromises and leaks of sensitive data, causing significant harm to companies and end users. The disruption of Glassworm is a relief for the development community, which can now operate with a reduced risk of attacks. ## Key Points - The Glassworm botnet was dismantled following the disruption of its C2 infrastructure. - The botnet utilized Solana blockchain and BitTorrent DHT network for its operations. - The takedown operation involved months of investigation and collaboration among security researchers. - The impact is significant for developers and technology companies, reducing the risk of supply chain attacks. ## What This Case Teaches 1. Collaboration among security researchers is crucial for dismantling sophisticated botnets. 2. The use of decentralized technologies, such as blockchain and BitTorrent, can complicate threat identification. 3. Supply chain security should be a priority for developers and technology companies. 4. Proactive and innovative measures are essential to combat emerging cyber threats.

Article information

Editorial author:Titan Layer Editorial Team
Original source:BleepingComputer
Original publisher:bleepingcomputer.com
Original author:bleepingcomputer.com
Original publication date:
Titan Layer publication date:May 28, 2026
Content type:Curated summary and editorial analysis

Share this article

Related Articles

Cyber Crime

FBI Takes Down NightmareStresser DDoS Platform

Titan Layer
5d ago
Cyber Crime

Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

Titan Layer
9/13/2026
Cyber Crime

Ukrainian Conti Ransomware Developer Sentenced to 4 Years in US Prison

Titan Layer
9/13/2026