ShadowV2 is a malware family tracked across 4 threat clusters and 10 intelligence report mentions on ThreatCluster. First observed November 26, 2025; most recent activity May 22, 2026.
Jacob Butler, a 23-year-old from Ottawa, Canada, was arrested for operating the KimWolf DDoS botnet, which infected over 2 million devices worldwide. The botnet utilized a DDoS-for-hire model, launching more than 25,000…
During the major AWS outage in October 2025, a Mirai-based botnet named ShadowV2 was identified infecting IoT devices across 28 countries. The botnet exploited known vulnerabilities in devices from manufacturers like…
Cybercriminals are exploiting vulnerabilities in Internet of Things (IoT) devices to deploy a new malware campaign known as ShadowV2. This campaign is affecting IoT devices globally, posing risks to users and…
Fortinet has reported that a five-year-old security vulnerability in its FortiOS SSL VPN software, identified as CVE-2020-12812, is being actively exploited in real-world attacks. This flaw allows attackers to bypass…