Tag: FICORA

FICORA and Kaiten Botnets Exploit Old D-Link Vulnerabilities for Global Attacks
News

FICORA and Kaiten Botnets Exploit Old D-Link Vulnerabilities for Global Attacks

Researchers studying cybersecurity are alerting people to an increase in malicious behavior that involves enlisting susceptible D-Link routers in two distinct botnets: CAPSAICIN, a Kaiten (also known as Tsunami) variation, and FICORA, a Mirai variant. According to a Thursday analysis by Vincent Li, a researcher at Fortinet FortiGuard Labs, these botnets are commonly propagated by known D-Link flaws that enable remote attackers to carry out malicious commands via a GetDeviceSettings action on the HNAP (Home Network Administration Protocol) interface. Numerous devices were impacted by a range of CVE numbers, including CVE-2015-2051, CVE-2019-10891, CVE-2022-37056, and CVE-2024-33112, when this HNAP vulnerability was initially discovered about ten years ago read more about FICORA and K...