logo

Shoddy Supply Chain Lurks Behind Mirai Botnet

ID: eb3e66bd-c52b-571c-814f-92e2d9e99c02

STIX ID: report--eb3e66bd-c52b-571c-814f-92e2d9e99c02

Feed Name: Security Ledger

Threat Score
85/100

Date Published: 2016-10-10

Date Updated: 2026-05-06

Author: Paul Roberts

...
...

Flashpoint analysis found that hard-coded default credentials and an authentication bypass in XiongMai Technologies’ NetSurveillance/CMS firmware allowed Mirai malware to infect over 500,000 DVRs, NVRs, and IP cameras, which were then used to launch massive DDoS attacks (exceeding 600–700 Gbps against targets such as KrebsOnSecurity and OVH); the issue is tracked as CVE-2016-1000245 and highlights critical supply-chain and IoT security failures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.