logo

Anti-DDoS Firm Heaped Attacks on Brazilian ISPs

ID: 26d5a587-e717-5af4-93d4-1d4960f8a1f7

STIX ID: report--26d5a587-e717-5af4-93d4-1d4960f8a1f7

Feed Name: Krebs on Security

Threat Score
70/100

Date Published: 2026-04-30

Date Updated: 2026-04-30

Author: BrianKrebs

...
...

**Executive Summary:** KrebsOnSecurity obtained an exposed archive showing that Huge Networks was compromised and that leaked SSH keys and infrastructure were used to build a Mirai-derived botnet exploiting CVE-2023-1389 in TP-Link Archer AX21 routers to perform large DNS amplification DDoS attacks against Brazilian ISPs; the company reports a January 2026 intrusion, has rotated keys and engaged third-party forensics, and the archive contains malicious scripts, control domains, and scanning infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.