BrickerBot back with a vengeance
BrickerBot, a Permanent Denial-of-Service (PDoS) attack platform, is back.
In early April, Radware’s Emergency Response Team identified the botnet designed to comprise IoT devices and corrupt their storage.
Over a four-day period, Radware’s honeypot recorded 1,895 PDoS attempts performed from around the world.
Radware’s honeypot recorded an intense, short-lived attack from BrickerBot.1, and a second, similar attack from BrickerBot.2 – which started PDoS attempts on the same date.
Radware also discovered a new version of the BrickerBot PDoS attack (BrickerBot.3) with a new command sequence.
The same honeypot also detected another similar sequence of commands, which is seen as an attack by BrickerBot.4.
The systems are using the Mirai exploit vector to compromise the target.
Any “busybox” based Linux device – like IoT devices such as IP cameras – which has Telnet exposed publically and has factory-default credentials are a potential victim.