Willing and not afraid to challenge the status quo.

DroneBL DDosed by DSL Modems and Routers infected by Botnet Worm

written by Ruan
at 7:06 pm
on March 23, 2009
in Security, Technology
no comments

“The people who bring you the DroneBL DNS Blacklist services, while investigating an ongoing DDoS incident, have discovered a botnet composed of exploited DSL modems and routers. OpenWRT/DD-WRT devices all appear to be vulnerable. What makes this worm impressive is the sophisticated nature of the bot, and the potential damage it can do not only to an unknowing end user, but to small businesses using non-commercial Internet connections, and to the unknowing public taking advantage of free Wi-Fi services. The botnet is believed to have infected 100,000 hosts.”

Poorly configured devices that allow remote administration access from the WAN side, combined with weak passwords for root, appears to be the reason for the successful proliferation of the worm.

Via Slashdot


comments

Leave a Comment...

You must be logged in to post a comment.


about this

Ruan is a resolute technophile that is currently devoted to the professional practice of Information Technology Management. In his free time Ruan pursues various interests including the study of Information Security practices and the exploration of visual culture through contemporary photography and communication design.


fineprint
entire contents © 2012 Ruan Müller