Symantec Warns: Worm Can Target Internet of Things
ID: 37802fab-ac8f-5fd6-84c9-81d086db4758
STIX ID: report--37802fab-ac8f-5fd6-84c9-81d086db4758
Feed Name: Security Ledger
Symantec researchers disclosed a worm called Linux.Darlloz that exploits a PHP vulnerability (CVE-2012-1823) to compromise Linux systems and is engineered with variants for embedded architectures (ARM, PPC, MIPS, MIPSEL), enabling potential IoT device infection; it spreads by scanning random IPs, attempting common credential logins, and issuing malicious HTTP POST requests to vulnerable PHP endpoints, though no confirmed non-PC device infections were observed in the wild at the time.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
