Monday, September 14, 2026
Follow on LinkedIn

Botnet

Hackers Hijacking Four-Faith Industrial Routers for Botnet Activity

Hackers are actively exploiting Four-Faith industrial routers to build botnets, leveraging a critical vulnerability identified as CVE-2024-9643. Security researchers from CrowdSec report a sharp rise in exploitation attempts targeting these devices, signaling a shift from initial probing to large-scale abuse. CVE-2024-9643...

Nexcorium-Associated Mirai Variant Uses TBK DVR Exploit to Scale Botnet Operations

A new iteration of the notorious Mirai botnet, dubbed Nexcorium, has emerged in the wild, aggressively targeting internet-connected video recording devices. According to recent threat research published by Fortinet's FortiGuard Labs, threat actors are exploiting a known command injection...

Prometei Botnet Attacking Windows Server to Gain Remote Access and Deploy Malware

A sophisticated attack is targeting Windows Server systems using Prometei, a Russian-linked botnet that has been active since 2016. This multi-functional malware combines cryptocurrency mining, credential theft, and remote-control capabilities to maintain long-term access to compromised systems. The Prometei botnet infiltrates...

Threat Actors Allegedly Selling MaaS Botnet on Hackers Forums

Threat actors are allegedly offering the complete source code of a sophisticated Malware-as-a-Service (MaaS) botnet for sale.  This advanced malicious framework represents a significant escalation in cybercriminal capabilities, leveraging legitimate enterprise-grade technologies and blockchain integration to create a highly resilient...

New Botnet Hijacks 9,000 ASUS Routers & Enables SSH Access by Injecting Public Key

A sophisticated botnet campaign dubbed "AyySSHush" has compromised over 9,000 ASUS routers worldwide, establishing persistent backdoor access that survives firmware updates and reboots.  The stealthy operation, first detected in March 2025, demonstrates advanced nation-state-level tradecraft by exploiting authentication vulnerabilities and...

New Botnet Dubbed “Eleven11bot” Hacked 30,000 Webcams

A newly identified botnet, tracked as Eleven11bot, has compromised approximately 30,000 internet-connected devices—primarily security cameras and network video recorders (NVRs)—to launch distributed denial-of-service (DDoS) attacks against critical infrastructure.  Discovered by Nokia Deepfield’s Emergency Response Team (ERT) on February 26, 2025,...

1.6 Million Android TVs Worldwide Hacked by Vo1d Botnet

A sophisticated botnet operation has compromised 1.6 million Android TV devices across 226 nations, leveraging advanced domain generation algorithms and cryptographic evasion techniques to create the largest known IoT threat since the 2016 Mirai attacks.  Dubbed Vo1d, this operation represents...

 Session Smart Routers With Default Passwords Hacked By Mirai Malware

Juniper Networks has issued an urgent advisory following reports of Mirai malware infections targeting Session Smart Routers (SSRs) left with default passwords. The campaign, first detected on December 11, exploited weak security practices to compromise devices and use them...

BADBOX Botnet Hacked 74,000 Android Devices With Customizable Remote Codes

The BADBOX botnet, a sophisticated cybercriminal operation, has compromised approximately 74,000 devices, including Android TV boxes, smartphones, and other electronics. This malware is pre-installed on devices before they even reach consumers, making it a particularly insidious threat. BADBOX is not just...

Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware

The Gafgyt malware (often referred to as Bashlite or Lizkebab) has expanded its attack scope by targeting publicly exposed Docker Remote API servers. Gafgyt malware, also known as Bashlite, and Mirai have targeted millions of vulnerable IoT devices in recent...

Latest News

Latest News