logo

Researchers Warn of CatDDoS Botnet and DNSBomb DDoS Attack Technique

ID: 7d92531d-6713-5cb9-93c4-e1c0d22adb59

STIX ID: report--7d92531d-6713-5cb9-93c4-e1c0d22adb59

Feed Name: The Hacker News

Threat Score
78/100

Date Published: 2024-05-28

Date Updated: 2026-05-08

Author: [email protected] (The Hacker News)

...
...

Researchers report that the CatDDoS Mirai-derived botnet has actively exploited more than 80 known vulnerabilities across numerous vendors to conscript routers and networking devices into DDoS campaigns (with observed daily targeting exceeding 300 devices), and that leaked/sold source code has spawned multiple near-identical variants; the report also describes DNSBomb (CVE-2024-33655), a DNS pulsing/PDoS technique capable of very high amplification (~20,000x) that abuses resolver behavior and was disclosed at IEEE S&P.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.