This talk is about «Hosted Box Botnets». A hosted box botnet, is a botnet of compromised web servers, usually using vulnerabilities in CMS on low cost hosted servers. I have followed an indonesian group which operates this kind of botnets and resells access to these powned servers.
The amazing thing is that this botnet is self expanding since compromised servers are automatically finding and compromizing other servers.
This talk will explain how this group operates.