Summary: A significant DDoS botnet known as Eleven11bot has been identified, reportedly affecting around 86,400 IoT devices globally, with the majority located in the US. The botnet has been conducting extensive DDoS attacks across various sectors, showcasing exceptional size and capability among non-state actor networks. Prominent cybersecurity organizations are actively tracking its activities and impacts, particularly in light of geopolitical tensions involving Iran.
Affected: IoT Devices, cybersecurity organizations
Keypoints :
- Eleven11bot comprises approximately 30,000 devices, primarily security cameras and NVRs, but scans suggest around 86,400 devices are impacted.
- Geographical distribution shows the highest number of affected devices in the United States, followed by the UK, Canada, and Australia.
- The botnetβs DDoS attacks vary greatly in intensity, reaching several hundred million packets per second.
- Attribution hints point towards Iranian involvement, coinciding with new economic sanctions from the US on Iran.
- New devices are being added to the botnet primarily through brute-force attacks and exploiting weak passwords.
Source: https://www.securityweek.com/new-eleven11bot-ddos-botnet-powered-by-80000-hacked-devices/
Views: 14