NoaBot: Latest Mirai-Based Botnet Targeting SSH Servers for Crypto Mining

January 10, 2024 at 11:39AM The new Mirai-based botnet NoaBot is used by threat actors for a crypto mining campaign since 2023. It includes a wormable self-spreader and an SSH key backdoor, and has been linked to a Rust-based malware called P2PInfect. NoaBot’s unique features make it difficult to detect, and it has targeted 849 … Read more

CISA Warns of FXC Router, QNAP NVR Vulnerabilities Exploited in the Wild

December 22, 2023 at 06:45AM CISA released advisories for ICS vulnerabilities affecting FXC routers and QNAP NVR devices, exploited in the wild. The FXC flaw allows remote code execution via NTP server settings, affecting outlet wall routers in Japan. QNAP’s vulnerability, patched years ago, is being exploited by a Mirai-based malware campaign targeting legacy models. … Read more

Somebody Just Killed the Mozi Botnet

November 3, 2023 at 02:46PM The Mozi botnet, once the most prolific in the world, has been effectively shut down by a kill switch triggered in August. The botnet, which enabled Distributed Denial of Service (DDoS) attacks and compromised Internet of Things (IoT) devices, is now largely non-functional. Researchers speculate that the creators or the … Read more