KadNap Malware Infects 14,000+ Edge Devices to Power Stealth Proxy Botnet
ID: f6954b02-c07a-5ed0-bff5-acae3bcd1819
STIX ID: report--f6954b02-c07a-5ed0-bff5-acae3bcd1819
Feed Name: The Hacker News
Threat Score
Researchers disclosed KadNap, a router-focused botnet that leverages a custom Kademlia DHT for decentralized C2 and has infected over 14,000 devices worldwide to provide anonymized proxy services, and ClipXDaemon, a Linux in-memory clipboard hijacker that targets X11 sessions to replace cryptocurrency addresses—both threats include concrete IoCs and operational details for detection and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
