New Cuttlefish malware infects routers to monitor traffic for credentials

May 1, 2024 at 09:27AM Cuttlefish, a new malware, targets enterprise and SOHO routers, creating proxy/VPN tunnels to steal data and authentication information. It can perform DNS/HTTP hijacking, targeting services such as Alicloud, AWS, and BitBucket. Black Lotus Labs found its active campaign in Turkey and recommends strengthening security measures and monitoring for unusual logins. … Read more

New botnet malware exploits two zero-days to infect NVRs and routers

November 22, 2023 at 12:40PM The ‘InfectedSlurs’ botnet is a new malware that exploits two zero-day vulnerabilities to infect routers and video recorder devices. It uses the hijacked devices to carry out distributed denial of service (DDoS) attacks for profit. The botnet was discovered by Akamai in late October 2023 and targets specific NVR and … Read more