216.73.216.6

BADBOX Botnet Is Back

· Published 17/12/2024 21:59 · Modified 18/12/2024 12:10

Export JSON

Essential information

Published
17/12/2024 21:59
Modified
18/12/2024 12:10
Tags
2024-12-17 ad fraud android badbox botnet firmware malware proxy smart tv supply-chain triada
Related entities
22 observables, 1 intrusion sets (apt), 10 techniques (mitre), 2 malware, 16 others

Description

The , previously thought to be contained, has resurfaced with increased scope and sophistication. Recent findings reveal over 192,000 infected devices, including high-end Yandex 4K QLED Smart TVs and Hisense smartphones, expanding beyond the initially targeted off-brand devices. The exploits compromised to install and secondary payloads without user consent, enabling activities such as residential proxying, remote code installation, and . The operation affects multiple countries, with Russia, China, and India being the most impacted. The 's ability to adapt and spread through global supply chains poses significant challenges for consumers and enterprises alike, emphasizing the importance of trusted vendors and partners in cybersecurity.

External references