Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. Other Discussions
  3. The Insider News
  4. New, more-powerful IoT botnet infects 3,500 devices in 5 days

New, more-powerful IoT botnet infects 3,500 devices in 5 days

Scheduled Pinned Locked Moved The Insider News
comlinuxiotsecurity
12 Posts 11 Posters 2 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • K Offline
    K Offline
    Kent Sharkey
    wrote on last edited by
    #1

    Ars Technica[^]:

    Discovery of Linux/IRCTelnet suggests troubling new DDoS menace could get worse.

    Please change the password on your internet-enabled light bulb

    M C E S 4 Replies Last reply
    0
    • K Kent Sharkey

      Ars Technica[^]:

      Discovery of Linux/IRCTelnet suggests troubling new DDoS menace could get worse.

      Please change the password on your internet-enabled light bulb

      M Offline
      M Offline
      Marc Clifton
      wrote on last edited by
      #2

      You know, what I want is for someone to post some code that tells me whether my IoT devices have been infected. I mean really, I've got several Beaglebone's running Debian with "debian/temppwd" as the root password connected to the Internet, and I really don't give a sh*t, but I am curious. Marc

      Imperative to Functional Programming Succinctly Contributors Wanted for Higher Order Programming Project! Learning to code with python is like learning to swim with those little arm floaties. It gives you undeserved confidence and will eventually drown you. - DangerBunny

      J D D 3 Replies Last reply
      0
      • M Marc Clifton

        You know, what I want is for someone to post some code that tells me whether my IoT devices have been infected. I mean really, I've got several Beaglebone's running Debian with "debian/temppwd" as the root password connected to the Internet, and I really don't give a sh*t, but I am curious. Marc

        Imperative to Functional Programming Succinctly Contributors Wanted for Higher Order Programming Project! Learning to code with python is like learning to swim with those little arm floaties. It gives you undeserved confidence and will eventually drown you. - DangerBunny

        J Offline
        J Offline
        Jorgen Andersson
        wrote on last edited by
        #3

        Marc Clifton wrote:

        what I want is for someone to post some code that tells me whether my IoT devices have been infected

        It's called an "antivirus".

        Marc Clifton wrote:

        I really don't give a sh*t,

        Isn't that the general problem in this case? Sorry if I come across as blunt, but I need my coffee in the morning.

        Wrong is evil and must be defeated. - Jeff Ello

        R 1 Reply Last reply
        0
        • J Jorgen Andersson

          Marc Clifton wrote:

          what I want is for someone to post some code that tells me whether my IoT devices have been infected

          It's called an "antivirus".

          Marc Clifton wrote:

          I really don't give a sh*t,

          Isn't that the general problem in this case? Sorry if I come across as blunt, but I need my coffee in the morning.

          Wrong is evil and must be defeated. - Jeff Ello

          R Offline
          R Offline
          Rob Grainger
          wrote on last edited by
          #4

          A quick search for "Anti-Virus Linux" found this gem... Why You Don’t Need an Antivirus On Linux (Usually)[^] So don't worry about it. There is no malware for Linux. These IoT attacks are all a figbox of your imagination.

          "If you don't fail at least 90 percent of the time, you're not aiming high enough." Alan Kay.

          1 Reply Last reply
          0
          • K Kent Sharkey

            Ars Technica[^]:

            Discovery of Linux/IRCTelnet suggests troubling new DDoS menace could get worse.

            Please change the password on your internet-enabled light bulb

            C Offline
            C Offline
            charlieg
            wrote on last edited by
            #5

            I see a huge opportunity here for security consulting and white hat services. :doh:

            Charlie Gilley Stuck in a dysfunctional matrix from which I must escape... "Where liberty dwells, there is my country." B. Franklin, 1783 “They who can give up essential liberty to obtain a little temporary safety deserve neither liberty nor safety.” BF, 1759

            1 Reply Last reply
            0
            • M Marc Clifton

              You know, what I want is for someone to post some code that tells me whether my IoT devices have been infected. I mean really, I've got several Beaglebone's running Debian with "debian/temppwd" as the root password connected to the Internet, and I really don't give a sh*t, but I am curious. Marc

              Imperative to Functional Programming Succinctly Contributors Wanted for Higher Order Programming Project! Learning to code with python is like learning to swim with those little arm floaties. It gives you undeserved confidence and will eventually drown you. - DangerBunny

              D Offline
              D Offline
              Dan Neely
              wrote on last edited by
              #6

              Take a look at Clam AV[^]. They have an official port in the Debian repo. It's not clear if that's just x86 Debian or also various assorted arm platforms too; but if a (primarilly windows) sysadmin at my previous job was able to build the source on sn HP True64 Unix/Dec Alpha box in a day despite having to use CD-R's to sneakernet dependencies across an airgap I'm almost certain you should have no real trouble getting it built on your bbones.

              Did you ever see history portrayed as an old man with a wise brow and pulseless heart, waging all things in the balance of reason? Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful? --Zachris Topelius Training a telescope on one’s own belly button will only reveal lint. You like that? You go right on staring at it. I prefer looking at galaxies. -- Sarah Hoyt

              M 1 Reply Last reply
              0
              • M Marc Clifton

                You know, what I want is for someone to post some code that tells me whether my IoT devices have been infected. I mean really, I've got several Beaglebone's running Debian with "debian/temppwd" as the root password connected to the Internet, and I really don't give a sh*t, but I am curious. Marc

                Imperative to Functional Programming Succinctly Contributors Wanted for Higher Order Programming Project! Learning to code with python is like learning to swim with those little arm floaties. It gives you undeserved confidence and will eventually drown you. - DangerBunny

                D Offline
                D Offline
                DaveAuld
                wrote on last edited by
                #7

                Look at your network traffic on your router and see what's talking to what.

                Dave Find Me On:Web|Youtube|Facebook|Twitter|LinkedIn Folding Stats: Team CodeProject

                1 Reply Last reply
                0
                • K Kent Sharkey

                  Ars Technica[^]:

                  Discovery of Linux/IRCTelnet suggests troubling new DDoS menace could get worse.

                  Please change the password on your internet-enabled light bulb

                  E Offline
                  E Offline
                  ed welch
                  wrote on last edited by
                  #8

                  I think the real problem here isn't the botnet, but that people think they need internet-enabled light bulbs.

                  1 Reply Last reply
                  0
                  • D Dan Neely

                    Take a look at Clam AV[^]. They have an official port in the Debian repo. It's not clear if that's just x86 Debian or also various assorted arm platforms too; but if a (primarilly windows) sysadmin at my previous job was able to build the source on sn HP True64 Unix/Dec Alpha box in a day despite having to use CD-R's to sneakernet dependencies across an airgap I'm almost certain you should have no real trouble getting it built on your bbones.

                    Did you ever see history portrayed as an old man with a wise brow and pulseless heart, waging all things in the balance of reason? Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful? --Zachris Topelius Training a telescope on one’s own belly button will only reveal lint. You like that? You go right on staring at it. I prefer looking at galaxies. -- Sarah Hoyt

                    M Offline
                    M Offline
                    Marc Clifton
                    wrote on last edited by
                    #9

                    Dan Neely wrote:

                    Take a look at Clam AV[^].

                    Nice - it installed without issues on the Beaglebone. Though, running clamscan the root folder eventually timed out with the terse message "Killed". :~ Marc

                    Imperative to Functional Programming Succinctly Contributors Wanted for Higher Order Programming Project! Learning to code with python is like learning to swim with those little arm floaties. It gives you undeserved confidence and will eventually drown you. - DangerBunny

                    raddevusR 1 Reply Last reply
                    0
                    • K Kent Sharkey

                      Ars Technica[^]:

                      Discovery of Linux/IRCTelnet suggests troubling new DDoS menace could get worse.

                      Please change the password on your internet-enabled light bulb

                      S Offline
                      S Offline
                      Shuqian Ying
                      wrote on last edited by
                      #10

                      A solution to the problem is to put these relatively dumber, less maintainable IOT devices security zones behind firewal and connect them using security gateways that has better ownership control, also in the same corresponding sec zones. Normal peoples don't open their houses to just anyone in the world, the same should be true on the internet ...

                      Find more in 1-NET: connects your resources anywhere[^]. Email searcher Email Aggregation Manager[^].

                      R 1 Reply Last reply
                      0
                      • M Marc Clifton

                        Dan Neely wrote:

                        Take a look at Clam AV[^].

                        Nice - it installed without issues on the Beaglebone. Though, running clamscan the root folder eventually timed out with the terse message "Killed". :~ Marc

                        Imperative to Functional Programming Succinctly Contributors Wanted for Higher Order Programming Project! Learning to code with python is like learning to swim with those little arm floaties. It gives you undeserved confidence and will eventually drown you. - DangerBunny

                        raddevusR Offline
                        raddevusR Offline
                        raddevus
                        wrote on last edited by
                        #11

                        Marc Clifton wrote:

                        Though, running clamscan the root folder eventually timed out with the terse message "Killed"

                        Now that is _interesting_! :thumbsup: What was the result? Were you able to discover anything?

                        My book, Launch Your Android App, is available at Amazon.com.

                        1 Reply Last reply
                        0
                        • S Shuqian Ying

                          A solution to the problem is to put these relatively dumber, less maintainable IOT devices security zones behind firewal and connect them using security gateways that has better ownership control, also in the same corresponding sec zones. Normal peoples don't open their houses to just anyone in the world, the same should be true on the internet ...

                          Find more in 1-NET: connects your resources anywhere[^]. Email searcher Email Aggregation Manager[^].

                          R Offline
                          R Offline
                          Rajesh R Subramanian
                          wrote on last edited by
                          #12

                          Shuqian Ying wrote:

                          put these relatively dumber, less maintainable IOT devices security zones behind firewal and connect them using security gateways that has better ownership control, also in the same corresponding sec zones

                          Or just use a normal friggin' bulb.

                          1 Reply Last reply
                          0
                          Reply
                          • Reply as topic
                          Log in to reply
                          • Oldest to Newest
                          • Newest to Oldest
                          • Most Votes


                          • Login

                          • Don't have an account? Register

                          • Login or register to search.
                          • First post
                            Last post
                          0
                          • Categories
                          • Recent
                          • Tags
                          • Popular
                          • World
                          • Users
                          • Groups