logo

Symantec Warns: Worm Can Target Internet of Things

ID: 37802fab-ac8f-5fd6-84c9-81d086db4758

STIX ID: report--37802fab-ac8f-5fd6-84c9-81d086db4758

Feed Name: Security Ledger

Threat Score
55/100

Date Published: 2013-12-02

Date Updated: 2026-05-08

Author: Paul Roberts

...
...

Symantec researchers disclosed a worm called Linux.Darlloz that exploits a PHP vulnerability (CVE-2012-1823) to compromise Linux systems and is engineered with variants for embedded architectures (ARM, PPC, MIPS, MIPSEL), enabling potential IoT device infection; it spreads by scanning random IPs, attempting common credential logins, and issuing malicious HTTP POST requests to vulnerable PHP endpoints, though no confirmed non-PC device infections were observed in the wild at the time.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.