News

Mirai Botnet Takes Down One Million German Routers

Mirai — the worm responsible for infecting tens of millions of IoT devices which were used as a botnet to DDoS managed DNS infrastructure provider Dyn in October — has evolved, and its new form has been used to take down nearly one million internet routers in Germany. KrebsOnSecurity reports that the Mirai variant incorporates a new exploit code which takes advantage of a security flaw within particular routers.

“Security experts say the multi-day outage is a sign of things to come as cyber criminals continue to aggressively scour the Internet of Things (IoT) for vulnerable and poorly-secured routers, Internet-connected cameras and digital video recorders (DVRs),” KrebsOnSecurity says. “Once enslaved, the IoT devices can be used and rented out for a variety of purposes — from conducting massive denial-of-service attacks capable of knocking large Web sites offline to helping cybercriminals stay anonymous online.”

“Until this week, all Mirai botnets scanned for the same 60+ factory default usernames and passwords used by millions of IoT devices,” KrebsOnSecurity adds. “But the criminals behind one of the larger Mirai botnets apparently decided to add a new weapon to their arsenal, incorporating exploit code published earlier this month for a security flaw in specific routers made by Zyxel and Speedport.”

The vulnerability in the two routers seems to have been exacerbated by Deutsche Telekom’s failure to block non-German IPs from remotely managing the devices. The solution to cure Mirai-infected routers, according to Deutsche Telekom, is to disconnect the device to wipe its memory, and then reconnect, at which point a firmware update from DT will patch the vulnerability.

Ashley Allen

Disqus Comments Loading...

Recent Posts

AMD Releases Software Adrenalin 24.4.1 WHQL GPU Drivers

Are you ready for Manor Lords? It seems many are, with the game blasting past…

2 hours ago

Fanatec Launching ClubSport Racing Wheel F1

I'm a big fan of the Fanatec racing wheels, and I've absolutely loved every single…

2 hours ago

Epomaker Release Upgraded TH80 Pro V2 Programmable Keyboard

I love unique peripherals, and even more so when they come with a bit of…

2 hours ago

BlizzCon 2024 Cancellation Announced

Blizzard Entertainment has confirmed that BlizzCon 2024 will not take place this year. The decision,…

3 hours ago

ROLL20 Lets You Run D&D and TTRPG Games Directly in Discord

If you play DnD and if you play DnD online there is a very high…

19 hours ago

Dragon’s Dogma 2 New Patch is Now Available For Download

The new patch for Dragons Dogma 2 is here and it has fixed many of…

20 hours ago