Report: Millions (and Millions) of Devices Vulnerable in latest Mirai Attacks
ID: a5dff5b9-dc32-55db-91aa-1ac90b00014d
STIX ID: report--a5dff5b9-dc32-55db-91aa-1ac90b00014d
Feed Name: Security Ledger
In-brief: A Mirai botnet variant exploited a flaw in TR-064/TR-069 remote management protocols (notably via port 7547/SOAP) to try to infect home broadband routers worldwide, knocking an estimated 900,000 Deutsche Telekom routers offline; Flashpoint estimated roughly 5 million infected or vulnerable endpoints globally. The report details the shift from brute-force credential attacks to protocol exploitation, observed scanning activity, impacted device models, and ongoing firmware updates and coordination with manufacturers and law enforcement.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
