News

Mirai Botnet Launches Fresh 54-Hour DDoS Attack

A new variant of the Mirai botnet has launched a fresh distributed denial of service (DDoS) attack that lasted over three days. Mirai – run by a type of malware able to infect and take control of IoT devices – was used in October 2016 to conduct one of the biggest DDoS attacks on record, launched against DNS service provider Dyn, taking down majors sites such as Twitter, Reddit, Netflix, and Github in the process. The Mirai source code was made public soon after. This latest Mirai attack, which used a modified version of the code, targeted a US college for around 54 hours straight, according to DDoS protection service Incapsula.

“The attack, which started on February 28 and ran for 54 hours straight, targeted one of our customers, a US college,” reports security expert Dima Bekerman for Incapsula. “The average traffic flow came in at over 30,000 RPS and peaked at around 37,000 RPS—the most we’ve seen out of any Mirai botnet. In total, the attack generated over 2.8 billion requests.”

“Our research showed that the pool of attacking devices included those commonly used by Mirai, including CCTV cameras, DVRs and routers,” Bekerman explains. “While we don’t know for sure, open telnet (23) ports and TR-069 (7547) ports on these devices might indicate that they were exploited by known vulnerabilities.”

“We also noticed that the DDoS bots used in the attack were hiding behind different user-agents than the five hardcoded in the default Mirai version,” he adds. “This–and the size of the attack itself–led us to believe that we might be dealing with a new variant, which was modified to launch more elaborate application layer attacks.”

Incapsula expects further Mirai attacks in the coming months.

Ashley Allen

Disqus Comments Loading...

Recent Posts

AMD Releases Software Adrenalin 24.4.1 WHQL GPU Drivers

Are you ready for Manor Lords? It seems many are, with the game blasting past…

30 mins ago

Fanatec Launching ClubSport Racing Wheel F1

I'm a big fan of the Fanatec racing wheels, and I've absolutely loved every single…

38 mins ago

Epomaker Release Upgraded TH80 Pro V2 Programmable Keyboard

I love unique peripherals, and even more so when they come with a bit of…

45 mins ago

BlizzCon 2024 Cancellation Announced

Blizzard Entertainment has confirmed that BlizzCon 2024 will not take place this year. The decision,…

1 hour ago

ROLL20 Lets You Run D&D and TTRPG Games Directly in Discord

If you play DnD and if you play DnD online there is a very high…

17 hours ago

Dragon’s Dogma 2 New Patch is Now Available For Download

The new patch for Dragons Dogma 2 is here and it has fixed many of…

18 hours ago