Mysterious malware threatens millions of routers and IoT devices
This mysterious malware called BotenaGo can use a number of methods to attack targets, then creates a 'backdoor' on the compromised devices.
Some anti-virus software detects this new malware because it has the same original way of spreading data as the Mirai botnet virus, the virus that caused the majority of distributed denial-of-service (DDoS) attacks in 2016. .
BotenaGo is written in Go, a programming language popular with software developers and malware authors in recent years.
First, BotenaGo will scan the internet for vulnerable targets. The malware then analyzes it to look for security holes.
Attackers can exploit security holes in internet-connected devices and can execute commands remotely to infiltrate the wider network, if they are not properly secured. Or bad guys can also use this option to spread malicious viruses.
Because BotenaGo appears to have been removed from a server hosted by the attackers, researchers are currently unable to analyze them.
According to the researchers, there are three possibilities for this mysterious malware.
- BotenaGo is just one module of a larger malware suite, and it's not currently being used in attacks.
- BotenaGo is likely linked to Mirai.
- BotenaGo is still in development. For some reason its beta was accidentally released early. So it still doesn't work.
However, even if BotenaGo were to stay idle, the sheer number of vulnerabilities it could exploit would leave millions of devices potentially vulnerable.
Security experts warn that, as companies need to install security updates as soon as possible, IoT devices must have the appropriate firewall configuration installed to protect and not be widely exposed. with the internet.
You should read it
- How to kill Malware with effective Zemana AntiMalware software
- Theory - What is Ransomware?
- More than 100,000 pages using Wordpress are infected with malware
- Download the malware removal tool and clean up Malware Hunter PRO computer for $ 49.95 for free
- Review IObit Malware Fighter 7 and give you the 100 key Pro version
- Top 10 most dangerous malware types with bank accounts
- Innovate or lose in the fight against malware
- Detecting new malware on Android can damage phones
May be interested
- 3 ways hackers can attack home routersa router is an important source of data transmission in the home. computers, laptops, tablets and phones all use routers to transfer data to websites worldwide.
- BadBox Malware Is Picking Up Speed, Targeting Certain Android Devicesauthorities have discovered that a number of iot and android devices were sold with badbox pre-installed.
- Warning: Detecting more than 1000 Cisco router and switch devices in Vietnam has a serious security errorthere are more than 1000 cisco router and switch devices in vietnam (all devices used in large network environments and core systems) are subject to serious security errors.
- Network basics: Part 2: Understanding the Routerrouters are an important networking device that almost every home owns but they really don't know much about them. in fact, most people don't even know what the router looks like, it's different from the modem.
- Land degradation threatens millions of people in the futuremost climate science focuses on the atmosphere and the ocean, but a new report shows that soil health is also important.
- Warning: The Joker malware has infected over 500,000 Huawei Android devicesthe joker, one of the most persistent and dangerous strains of malware targeting android devices, has just been discovered.
- What is Joker Malware? The most effective way to protect against Joker Malwarejoker malware is a sophisticated malware that targets mobile devices, especially on android and ios operating systems.
- What to do with a virus infected CD, DVD or USBhow to safely handle external devices such as cds, dvds or usb-infected viruses or malware.
- The Linksys smart Wi-Fi router was found to contain information leaks of connected devicesmore than 25,000 smart wi-fi router devices (smart wi-fi routers) with linksys famous brands are said to be affected by a serious security hole.
- After 15 years, the notorious MyDoom poison worm still exists and threatens email users worldwidemydoom (also known as novarg, mimail and shimg) is a family of malicious software that is believed to have been at least active since 2004 until now.