Mirai 亜種 InfectedSlurs の活動状況
ID: 98cb26d1-76c0-598c-ba67-ba8a5089ca2c
STIX ID: report--98cb26d1-76c0-598c-ba67-ba8a5089ca2c
Feed Name: IIJ Security Diary
IIJ observed active operations of the Mirai-derived botnet "InfectedSlurs" that leverages multiple zero-day vulnerabilities to compromise devices (notably changing hostnames to "TBOT" or "PBOC"). The botnet likely comprises thousands to over ten thousand infected devices, performs widespread scanning (with many unique source IPs) and conducts frequent DDoS attacks (about 240 per day), disproportionately affecting devices used primarily in Japan and implicating potential abuse as a DDoS-for-hire infrastructure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
