Over the previous three months, the threat actors behind the CatDDoS malware botnet have infiltrated susceptible machines and co-opted them into a botnet for the purpose of conducting distributed denial-of-service (DDoS) assaults by taking use of over 80 known security weaknesses in various software.
The QiAnXin XLab team said that “many known vulnerabilities have been exploited by CatDDoS-related gangs to distribute samples.” Furthermore, it has been noted that the maximum number of targets in a day exceeds 300.
The vulnerabilities affect networking equipment, routers, and other devices from vendors like Cacti, Cisco, D-Link, DrayTek, FreePBX, GitLab, Gocloud, Huawei, Jenkins, Linksys, Metabase, NETGEAR, Realtek, Seagate, SonicWall, Tenda, TOTOLINK, TP-Link, ZTE, and Zyxel, among others. Apache is affected as well.
CatDDoS was first identified as a Mirai botnet variant that could launch DDoS assaults via read more Researchers Warn of CatDDoS Botnet and DNSBomb DDoS Attack Technique.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
