Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices
A covert botnet intended for distributed denial-of-service (DDoS) assaults has been revealed by cybersecurity researchers.
Since its initial appearance in 2023, the botnet, known as Masjesu, has been promoted on Telegram as a DDoS-for-hire service. It may target a variety of IoT devices across various architectures, including routers and gateways.
In order to ensure long-term survival, Trellix security researcher Mohideen Abdul Khader F stated in a report on Tuesday that Masjesu, which is designed for persistence and low visibility, prefers cautious, low-key execution over widespread infection, purposefully avoiding blocklisted IP ranges like those owned by the Department of Defense (DoD).
Because it uses XOR-based encryption to hide strings, configurations, and payload data, it'...

