Mirai clone inowedzera gumi nembiri mitsva yekushandisa kunanga bhizinesi IoT zvishandiso

Vatsvagiri vakawana clone nyowani yeanozivikanwa Mirai botnet, yakanangwa neIoT zvishandiso. Panguva ino, zvishandiso zvakadzikwa zvakagadzirirwa kushandiswa munzvimbo dzebhizinesi zviri munjodzi. Chinangwa chekupedzisira chevanorwisa ndechekudzora zvishandiso zvine bandwidth uye kuita hombe-yakakura DDoS kurwisa.

Mirai clone inowedzera gumi nembiri mitsva yekushandisa kunanga bhizinesi IoT zvishandiso

Cherechedza:
Panguva yekunyora shanduro, handina kuziva kuti hub yaitova nayo nyaya yakafanana.

Vanyori vekutanga Mirai vakatosungwa, asi kuwanikwa source code, yakabudiswa muna 2016, inobvumira varwi vatsva kuti vagadzire botnets yavo kubva pairi. Semuyenzaniso, satory ΠΈ Okiru.

Iyo yekutanga Mirai yakaonekwa muna 2016. Yakatapukira ma routers, IP makamera, DVRs uye zvimwe zvishandiso zvinowanzova neiyo default password, pamwe nemidziyo inoshandisa dzechinyakare shanduro dzeLinux.

New Mirai musiyano wakanangana nemidziyo yemabhizinesi

Botnet itsva yakawanikwa neboka revatsvakurudzi Unit 42 kubva kuPalo Alto Network. Iyo inosiyana kubva kune mamwe ma clones mukuti yakagadzirirwa bhizinesi zvishandiso, kusanganisira WePresent WiPG-1000 isina waya mharidzo masisitimu uye LG Supersign TVs.

Kuremerwa kwekushandisa kwekushandisa kwe LG Supersign TVs (CVE-2018-17173) kwakaitwa kuwanikwa munaGunyana gore rapfuura. Uye yeWePresent WiPG-1000, yakabudiswa muna 2017. Pakazara, bot yakashongedzerwa ne 27 maitiro, ayo matsva 11. Seti ye "unusual default credentials" yekuitisa kurwiswa kweduramazwi yakawedzerwawo. Iyo itsva Mirai musiyano zvakare inonangana akasiyana akamisikidzwa Hardware akadai se:

  • Linksys routers
  • ZTE routers
  • DLink routers
  • Network kuchengetedza zvishandiso
  • NVR uye IP kamera

"Izvi zvitsva zvinopa botnet nzvimbo yakakura yekurwisa," Unit 42 vaongorori vakadaro mune blog post. "Kunyanya, kunanga nzira dzekukurukurirana dzemakambani kunobvumira kuti idzore bandwidth yakawanda, izvo zvinozoguma nekuwedzera moto webhotnet kuita DDoS kurwisa."

Chiitiko ichi chinoratidza kudiwa kwemabhizinesi kuti atarise maIoT zvishandiso panetiweki yavo, kunyatso gadzirisa kuchengetedzeka, uye zvakare kudiwa kwekugara uchigadziridzwa.
.

Source: www.habr.com

Voeg