threat-intel Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing A new version of the Kimwolf/AISURU Android and IoT botnet, Kimwolf v7, has been discovered by Palo Alto Networks Unit 42. This version significantly improves its operational resilience and DDoS attack capabilities by utilizing HTTP/2-based floods, a tiered C2 infrastructure with Ethereum Name Service (ENS) and a Tor h… The Hacker News · Aug 11, 2026 High botnetddosadb