Akamai: New DoS Tool Leads To Resurgence of SNMP Attacks
ID: 0b61d3da-916c-5bf3-86ec-2527df10cf31
STIX ID: report--0b61d3da-916c-5bf3-86ec-2527df10cf31
Feed Name: Security Ledger
Threat Score
Akamai's Prolexic advisory warns of a resurgence in large-scale SNMP-based DDoS amplification attacks observed since April 11, where attackers scan for devices on UDP port 161 with the default 'public' community string and send snmpbulkget requests that cause large GetResponse floods (examples exceeding 64KB) to targeted IPs; Akamai observed 14 campaigns and recommends upgrading to SNMPv3, restricting public access to SNMP devices, and tightening access policies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
