Home Artists Posts Import Register

Content

A large scale IoT botnet is happening against devices running Android, Linux, and the Darwin OS's. Remember to change default passwords and disable remote admin access on IoT devices, if you use them.


Files

Thousands of infected IoT devices used in for-profit anonymity service

Machines are infected by scanning for SSH-or secure shell-servers and when found attempting to guess weak passwords. Malware written in the Go programming language then implements a botnet with an original design, meaning its core functionality is written from scratch and doesn't borrow from previously seen botnets.

Comments

Don Bright

"Machines are infected by scanning for SSH—or secure shell—servers and when found attempting to guess weak passwords" .... are they not using keys and passphrases? if i remember digitialocean they even have you put in your key before a server is booted so you never even have to enable ssh passwords to build a server....