The FBI and Google Threat Intelligence Group carried out a joint operation against a large proxy network that had been used in cybercrime around the world. Officials said the network, known to researchers as Popa botnet and offered as NetNut, was significantly disrupted. According to the investigation, it spread through low-cost Android smart TVs, TV boxes, and unofficial apps that included a harmful software kit. Once these devices connected to the internet, they began to work as proxy exit points without clear user consent. That allowed attackers to route traffic through home connections and hide their identity. Google said at least 316 threat groups used the network during one week in June 2026 for password theft, credential theft, ad fraud, and sensitive data collection. Authorities also seized hundreds of domain names and disabled accounts used in the botnet's command and control system.
technologyIntermediate2 min read7/8/2026
FBI and Google Target Large Proxy Network
The FBI and Google said they carried out a joint operation against a large proxy network used in cybercrime. The network used more than 2 million devices and spread through Android smart TVs, TV boxes, and unofficial apps.
