216.73.217.22

IoT Botnet Linked to Large-scale DDoS Attacks Since the End of 2024

· Published 17/01/2025 18:13 · Modified 20/01/2025 11:13

Export JSON

Essential information

Published
17/01/2025 18:13
Modified
20/01/2025 11:13
Tags
2025-01-17 bashlite botnet ddos iot ip cameras mirai
Related entities
16 techniques (mitre), 2 malware, 11 others

Description

An has been orchestrating large-scale attacks globally since late 2024, targeting companies in Japan and other countries. The , comprising and variants, infects devices by exploiting vulnerabilities and weak credentials. It uses various attack methods, can update malware, and enable proxy services. Attack targets are geographically dispersed, with a focus on North America and Europe. The primary infected devices are wireless routers and from well-known brands. The 's infection process includes downloading and executing malware payloads that connect to C&C servers for attack commands. Different command usage patterns were observed between domestic and international targets, impacting various industry sectors.

External references