logo

FBI spots HiatusRAT malware attacks targeting web cameras, DVRs

ID: 1970276b-13b7-563b-8f7f-6caaf49ddb9f

STIX ID: report--1970276b-13b7-563b-8f7f-6caaf49ddb9f

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-12-16

Date Updated: 2026-03-27

Author: Sergiu Gatlan

...
...

The FBI warning describes an active HiatusRAT campaign scanning and compromising internet-exposed web cameras, DVRs, and routers—primarily Chinese-branded Hikvision and Xiongmai devices—by exploiting several known CVEs and weak vendor passwords, using tools like Ingram and Medusa to create SOCKS5 proxy networks and enable further payload deployment across multiple countries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.