Mirai Botnet Spinoffs Unleash Global Wave of DDoS Attacks
ID: 12dccb7e-edeb-51dd-a580-f82f28bcf145
STIX ID: report--12dccb7e-edeb-51dd-a580-f82f28bcf145
Feed Name: Dark Reading
Date Published: 2025-01-21
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
Security researchers from Qualys and Trend Micro report active Mirai-derived botnet campaigns — including a Murdoc_Botnet variant — that are exploiting CVE-2024-7029, CVE-2017-17215 and weak/default credentials to compromise IP cameras, routers and other IoT devices worldwide, building large botnets used for volumetric and session-exhaustion DDoS attacks against organizations across North America, Europe and Asia; the reports include sample counts, geographic distribution of infected IPs, observed attack vectors, and recommended mitigations such as traffic filtering, credential hygiene, and monitoring for suspicious scripts and processes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
